PT-2026-28114 · Ibm · Ibm Infosphere Information Server+1

CVE-2025-36422

·

Publicado

2026-03-25

·

Atualizado

2026-03-25

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6
Description IBM InfoSphere DataStage Flow Designer is susceptible to cross-site request forgery. This could allow an attacker to perform unauthorized actions using the privileges of a trusted user. The issue involves malicious requests being transmitted to the website.
Recommendations IBM InfoSphere Information Server versions prior to 11.7.0.0 and after 11.7.1.6 should be used.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-36422

Produtos afetados

Ibm Infosphere Datastage
Ibm Infosphere Information Server