VDB
CVE-2025-36245
CVE-2025-36245
PUBLISHED
CVSS 8.800000190734863 HIGH
IBM InfoSphere 11.7.0.0 through 11.7.1.6 Information Server could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input.
EPSS 0.04% · 11.4th percentile
Risk Scores
CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
11.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| IBM | InfoSphere Information Server | 11.7.0.0 |
| ibm | infosphere_information_server | 11.7 |
Timeline
- Sep 29, 2025 CVE Published
- Sep 30, 2025 EPSS Score
- Oct 4, 2025 Coalition ESS Score
- Oct 6, 2025 Coalition ESS Score
- Oct 7, 2025 EPSS Score
- Oct 7, 2025 Coalition ESS Score
- Oct 13, 2025 EPSS Score
- Oct 18, 2025 Coalition ESS Score
- Oct 19, 2025 Coalition ESS Score
- Oct 20, 2025 EPSS Score
- Oct 26, 2025 EPSS Score
- Nov 2, 2025 EPSS Score
References
- https://www.ibm.com/support/pages/node/7246170 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-36245 advisory