CVE-2025-27904

MEDIUM WAF: Low
CVSS 6.5 Published: 2026-02-17
CWE-352

IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 IBM Db2 Recovery Expert for Linux, UNIX and Windows is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

WAF Coverage Analysis

Cross-Site Request Forgery (CSRF) Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Affected Software

VendorProductVersion
ibmdb2_recovery_expert5.5.0
ibmdb2_recovery_expert5.5.0
ibmdb2_recovery_expert5.5.0

References

Back to CVE Database