CVE-2025-27898

Publication date

2026-02-17 19:52:46

Family

ibm

State

PUBLISHED

Description

IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 does not invalidate session after a timeout which could allow an authenticated user to impersonate another user on the system.