CVE-2026-1015: IBM InfoSphere Information Server is vulnerable to server-side request forgery
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1015?
The severity of CVE-2026-1015 is classified as high due to the potential for server-side request forgery that could lead to unauthorized requests.
How do I fix CVE-2026-1015?
To fix CVE-2026-1015, apply the latest patch provided by IBM for InfoSphere Information Server versions 11.7.0.0 to 11.7.1.6.
What systems are affected by CVE-2026-1015?
CVE-2026-1015 affects IBM InfoSphere Information Server versions from 11.7.0.0 to 11.7.1.6.
Can CVE-2026-1015 be exploited remotely?
Yes, CVE-2026-1015 can be exploited remotely by an authenticated attacker using server-side request forgery techniques.
What are the potential consequences of CVE-2026-1015 exploitation?
Exploitation of CVE-2026-1015 may allow attackers to send unauthorized requests, potentially leading to data leakage or further system compromise.