Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
10.0
CVE-2024-27253: IBM DOORS Next: Unauthorized Access to Sensitive Data
CVE-2024-27253 · published 22 days ago
Summary
IBM DOORS Next is affected by a security weakness that allows an authenticated user to access data they shouldn't have. This could lead to unauthorized changes or disclosure of sensitive information. IBM recommends applying the latest interim fix to address this issue.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| ibm | doors next | <= 7.0.3 Interim Fix 018 |
Original advisory text
IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass security logic to perform unauthorized activities.
IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass security logic to perform unauthorized activities.
References
- https://www.ibm.com/support/pages/node/7282705 vendor-advisory patch
Severity
10.0
Critical
CVSS 3.1: 10.0 (MITRE)
Exploitation
EPSS <1%
Type
CWE-287Improper Authentication
Timeline
Published12 Aug 2026
Updated2 Sep 2026
First seen12 Aug 2026
Monitor software like this
Free during beta