CNNVD-202509-3568 Information

CNNVD ID

CNNVD-202509-3568

CVE-2025-36202

  • CNNVD Published: 2025-09-22

Description (Chinese)

IBM webMethods Integration是美国国际商业机器(IBM)公司的一个混合的企业 iPaaS。 IBM webMethods Integration 10.15版本和11.1版本存在格式化字符串错误漏洞,该漏洞源于对外部源传递的参数格式字符串验证不当,可能导致执行系统命令。

Description (English)

IBM webMethods Information is a hybrid enterprise of the United States International Business Machinery (IBM) iPaas. Versions 10.15 and 11.1 of IBM webMethods Information contain a formatted string error loop, which results from the incorrect verification of the parameter format of the external source, which may lead to the execution of the system command.

Hazard Level

Medium

Vulnerability Type

格式化字符串错误

Affected Vendor

ICEcoder

Published

2025-09-22

Last Modified

2026-02-24

References

https://www.ibm.com/support/pages/node/7245720

Patch

https://www.ibm.com/support/pages/node/7245720

Share on: