Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-13717 | IBM Sterling Partner Engagement Manager 6.1.0, 6.2.0, 6.2.2 JWT secret is stored in public Helm Charts and is not stored as a Kubernetes secret. |
Solution
Product Version(s) Remediation/Fix/Instructions IBM Sterling Partner Engagement Manager Standard Edition / Essentials Edition 6.1.x, 6.2.0,6.2.3, 6.24 6.2.0,6.2.3,6.2.4
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7232762 |
|
Wed, 20 Aug 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-522 |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 07 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 May 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Sterling Partner Engagement Manager 6.1.0, 6.2.0, 6.2.2 JWT secret is stored in public Helm Charts and is not stored as a Kubernetes secret. | |
| Title | IBM Sterling Partner Engagement Manager information disclosure | |
| First Time appeared |
Ibm
Ibm sterling Partner Engagement Manager |
|
| Weaknesses | CWE-260 | |
| CPEs | cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.1.2:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.1.2:*:*:*:standard:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.0:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.0:*:*:*:standard:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.2:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.2:*:*:*:standard:*:*:* |
|
| Vendors & Products |
Ibm
Ibm sterling Partner Engagement Manager |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-28T14:21:26.785Z
Reserved: 2025-04-15T17:50:31.398Z
Link: CVE-2025-33093
Updated: 2025-05-07T13:19:36.637Z
Status : Analyzed
Published: 2025-05-07T11:15:52.610
Modified: 2025-08-20T02:38:21.593
Link: CVE-2025-33093
No data.
OpenCVE Enrichment
No data.
EUVD