CVE-2015-7401: IBM Curam Social Program Management

Medium severity, CVSS 4.3. EPSS: 1.3% chance of exploitation in the next 30 days.

IBM Curam Social Program Management 6.1.x before 6.1.1.1 allows remote authenticated users to bypass intended access restrictions and obtain sensitive document information by guessing the document id. IBM X-Force ID: 107106.

Affected products

  • IBM Curam Social Program Management: from 6.1.0.0, before 6.1.1.1 (fixed in 6.1.1.1)

Published 2018-03-26. Last modified 2026-06-17.