PT-2026-28114 · Ibm · Ibm Infosphere Information Server+1
CVE-2025-36422
·
Publicado
2026-03-25
·
Atualizado
2026-03-25
CVSS v3.1
4.3
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6
Description
IBM InfoSphere DataStage Flow Designer is susceptible to cross-site request forgery. This could allow an attacker to perform unauthorized actions using the privileges of a trusted user. The issue involves malicious requests being transmitted to the website.
Recommendations
IBM InfoSphere Information Server versions prior to 11.7.0.0 and after 11.7.1.6 should be used.
Correção
CSRF
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Infosphere Datastage
Ibm Infosphere Information Server