CVE-2025-33077: IBM Engineering Systems Design Rhapsody
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local user could overflow the buffer and execute arbitrary code on the system.
Affected products
- IBM Engineering Systems Design Rhapsody: version 9.0.2 only; version 10.0 only; version 10.0.1 only
Published 2025-07-23. Last modified 2026-06-17.