IBM Db2 Intelligence Center 1.1.0, 1.1.1, 1.1.2 could allow an authenticated user to perform unauthorized actions due to client-side enforcement of sever side security mechanisms.

Project Subscriptions

Vendors Products
Db2 Intelligence Center Subscribe
Advisories

No advisories yet.

Fixes

Solution

Product Version impacted Remediation IBM Db2 Intelligence Center 1.1.0, 1.1.1, 1.1.2 Upgrade to: IBM Db2 Intelligence Center 1.1.3.0 https://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm%7EOther%20software&product=ibm/Information+Management/IBM+Db2+Intelligence+Center&release=1.1.3.1&platform=All&function=all


Workaround

No workaround given by the vendor.

History

Wed, 14 Jan 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Ibm db2 Intelligence Center
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:ibm:db2_intelligence_center:*:*:*:*:*:*:*:*
Vendors & Products Ibm db2 Intelligence Center

Mon, 29 Dec 2025 23:15:00 +0000

Type Values Removed Values Added
First Time appeared Ibm
Ibm db2
Vendors & Products Ibm
Ibm db2

Fri, 26 Dec 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 26 Dec 2025 13:30:00 +0000

Type Values Removed Values Added
Description IBM Db2 Intelligence Center 1.1.0, 1.1.1, 1.1.2 could allow an authenticated user to perform unauthorized actions due to client-side enforcement of sever side security mechanisms.
Title Client-Side Enforcement of Server-Side Security in IBM Db2 Intelligence Center
Weaknesses CWE-602
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-12-26T14:37:13.233Z

Reserved: 2025-12-13T21:53:58.617Z

Link: CVE-2025-14687

cve-icon Vulnrichment

Updated: 2025-12-26T14:37:10.287Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-26T14:15:58.347

Modified: 2026-01-14T20:46:53.187

Link: CVE-2025-14687

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-29T23:04:08Z

Weaknesses