CVE-2025-1499

Severity
6.5MEDIUM
EPSS
0.1%
top 78.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 1

Description

IBM InfoSphere Information Server 11.7 stores credential information for database authentication in a cleartext parameter file that could be viewed by an authenticated user.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

🔴Vulnerability Details

2
CVEList
IBM InfoSphere Information Server information disclosure2025-06-01
GHSA
GHSA-3jxj-c73c-7933: IBM InfoSphere Information Server 112025-06-01
CVE-2025-1499 (MEDIUM CVSS 6.5) | IBM InfoSphere Information Server 1 | cvebase.io