# CVE-2025-36221

## Summary

- **CVE ID:** CVE-2025-36221
- **Severity:** MEDIUM
- **CVSS Score:** 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
- **CWE:** CWE-1392
- **Published:** May 26, 2026
- **Last Modified:** May 26, 2026

## Description

IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through  Interim Fix 002 IBM Cloud Pak for Data System uses default passwords default passwords from the manufacturing process for use during the installation process, which could allow an attacker to bypass authentication.

## Affected Products

- IBM — Cloud Pak for Data System - Cyclops (11.3.0.2)

## References

- [CNA](https://www.ibm.com/support/pages/node/7273923)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.27%
- **EPSS Percentile:** 18.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._