CVE-2025-14912: IBM InfoSphere Information Server is vulnerable to server-side request forgery
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
IBM InfoSphere Information Server is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14912?
CVE-2025-14912 has been rated with a high severity due to its potential for server-side request forgery that can lead to unauthorized access.
How do I fix CVE-2025-14912?
To fix CVE-2025-14912, you need to apply the latest patches provided by IBM for InfoSphere Information Server versions 11.7.0.0 to 11.7.1.6.
Who is affected by CVE-2025-14912?
CVE-2025-14912 affects users of IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6.
What type of vulnerability is CVE-2025-14912?
CVE-2025-14912 is a server-side request forgery (SSRF) vulnerability.
Can an unauthenticated user exploit CVE-2025-14912?
No, an authenticated attacker is required to exploit CVE-2025-14912.