CVE-2025-64646CWE-14

Multiple Vulnerabilities in IBM Concert Software

Medium · published March 25, 2026

CVSS v3.1
6.2
EPSS
0%
Percentile
6.9
In the wild
Unconfirmed
What it is

IBM Concert 1.0.0 through 2.2.0 could allow an attacker to access sensitive information in memory due to the buffer not properly clearing resources.

The record
Technical detail
CVSS v3.1
6.2 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00174 · 6.9th percentile
Weakness
CWE-14 · Compiler Removal of Code to Clear Buffers
Published
2026-03-25T20:35Z
EPSS history
Timeline
  • 25 MAR 20:35Z
    Multiple Vulnerabilities in IBM Concert Software
    cvelistv5