CVE-2025-36258

CWE-2563 documents3 sources
Severity
5.5MEDIUM
EPSS
0.0%
top 98.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 25

Description

IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 product stores user credentials and other sensitive information in plain text which can be read by a local user.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:NExploitability: 2.5 | Impact: 4.0

Affected Packages2 packages

CVEListV5ibm/infosphere_information_server11.7.0.011.7.1.6
NVDibm/infosphere_information_server11.7.0.011.7.1.6

🔴Vulnerability Details

2
CVEList
IBM InfoSphere Information Server is vulnerable due to plaintext storage of a password2026-03-25
GHSA
GHSA-ppqh-5g92-f826: IBM InfoSphere Information Server 112026-03-25