First published: Wed Apr 23 2025(Updated: )
IBM InfoSphere Information 11.7 Server authenticated user to obtain sensitive information when a detailed technical error message is returned in a request. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Server | ||
IBM InfoSphere Information Server | <=11.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25045 is classified as a high severity vulnerability due to its potential to expose sensitive information to authenticated users.
To fix CVE-2025-25045, it is recommended to apply the latest patches provided by IBM for InfoSphere Information Server version 11.7.
CVE-2025-25045 affects authenticated users of IBM InfoSphere Information Server 11.7 who can access detailed technical error messages.
CVE-2025-25045 can expose sensitive information that may facilitate further attacks against the system.
Yes, IBM provides a patch for CVE-2025-25045 that can be found on their support page.