CVE-2025-12832: IBM InfoSphere Information Server Server-Side Request Forgery
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
IBM InfoSphere Information Server is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12832?
CVE-2025-12832 is classified as a high severity vulnerability due to its potential for SSRF attacks.
How do I fix CVE-2025-12832?
To fix CVE-2025-12832, apply the latest patches provided by IBM for InfoSphere Information Server.
Who is affected by CVE-2025-12832?
CVE-2025-12832 affects IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6.
What type of attack can CVE-2025-12832 facilitate?
CVE-2025-12832 may facilitate server-side request forgery (SSRF), allowing unauthorized requests to be sent from the system.
Is authentication required to exploit CVE-2025-12832?
Yes, an authenticated attacker is required to exploit CVE-2025-12832.