PatchSiren

iba Systems CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL iba Systems CVE published 2026-01-27

CVE-2025-14988

CVE-2025-14988 is a Critical issue in iba Systems ibaPDA that CISA says could allow unauthorized actions on the file system under certain conditions. The supplied CVSS vector (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) indicates a network-reachable issue with no authentication or user interaction required, which is why it is rated 9.8. CISA published the advisory on 2026-01-27 and later updated it on 2 [truncated]