CVE-2025-13723

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive user information using an expired access token
References
Link Resource
https://www.ibm.com/support/pages/node/7263391 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:essentials:*:*:*
cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:essentials:*:*:*
cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:standard:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-13 19:53

Updated : 2026-03-18 19:18


NVD link : CVE-2025-13723

Mitre link : CVE-2025-13723

CVE.ORG link : CVE-2025-13723


JSON object : View

Products Affected

ibm

  • sterling_partner_engagement_manager

linux

  • linux_kernel
CWE
CWE-324

Use of a Key Past its Expiration Date