PT-2025-33507 · Ibm · Ibm Ts4500

Florian Holley

·

Published

2025-08-15

·

Updated

2025-10-21

·

CVE-2025-36088

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: IBM TS4500 versions 1.10.00-F00, 1.11.0.0-D00, 1.11.0.1-C00, and 1.11.0.2-C00
Description: The IBM TS4500 web GUI is susceptible to cross-site scripting. An authenticated user can embed arbitrary JavaScript code into the Web UI, potentially altering functionality and leading to credentials disclosure within a trusted session.
Recommendations: Update to a newer version that addresses this issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-36088

Affected Products

Ibm Ts4500