PT-2025-33507 · Ibm · Ibm Ts4500
Florian Holley
·
Published
2025-08-15
·
Updated
2025-10-21
·
CVE-2025-36088
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions:
IBM TS4500 versions 1.10.00-F00, 1.11.0.0-D00, 1.11.0.1-C00, and 1.11.0.2-C00
Description:
The IBM TS4500 web GUI is susceptible to cross-site scripting. An authenticated user can embed arbitrary JavaScript code into the Web UI, potentially altering functionality and leading to credentials disclosure within a trusted session.
Recommendations:
Update to a newer version that addresses this issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Ts4500