CVE-2025-64646CWE-14
Multiple Vulnerabilities in IBM Concert Software
Medium · published March 25, 2026
What it is
IBM Concert 1.0.0 through 2.2.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.
The record
Technical detail
- CVSS v3.1
- 6.2 · MEDIUM
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00174 · 6.9th percentile
- Weakness
- CWE-14 · Compiler Removal of Code to Clear Buffers
- Published
- 2026-03-25T20:35Z
EPSS history
Timeline