PT-2026-28109 · Ibm · Ibm Infosphere Information Server

Published

2026-03-25

·

Updated

2026-03-25

·

CVE-2025-14808

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6
Description The software may allow an attacker to obtain sensitive information from the query string of an HTTP GET method. This information could be obtained using man-in-the-middle techniques. The affected software processes requests using data from the query string.
Recommendations Update to a version later than 11.7.1.6.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-14808

Affected Products

Ibm Infosphere Information Server