CVE-2025-25045: IBM InfoSphere Information Server information disclosure
IBM InfoSphere Information 11.7 Server authenticated user to obtain sensitive information when a detailed technical error message is returned in a request. This information could be used in further attacks against the system.
Other sources
IBM InfoSphere Information Server authenticated user
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25045?
CVE-2025-25045 is classified as a high severity vulnerability due to its potential to expose sensitive information to authenticated users.
How do I fix CVE-2025-25045?
To fix CVE-2025-25045, it is recommended to apply the latest patches provided by IBM for InfoSphere Information Server version 11.7.
Who is affected by CVE-2025-25045?
CVE-2025-25045 affects authenticated users of IBM InfoSphere Information Server 11.7 who can access detailed technical error messages.
What kind of information can be exposed by CVE-2025-25045?
CVE-2025-25045 can expose sensitive information that may facilitate further attacks against the system.
Is there a patch available for CVE-2025-25045?
Yes, IBM provides a patch for CVE-2025-25045 that can be found on their support page.