CNNVD-202601-3205 Information

CNNVD ID

CNNVD-202601-3205

CVE-2025-36418

  • CNNVD Published: 2026-01-20

Description (Chinese)

IBM ApplinX是美国国际商业机器(IBM)公司的一个专注于将绿屏界面转换为基于 Web 的现代应用程序。 IBM ApplinX 11.1版本存在数据伪造问题漏洞,该漏洞源于JWT令牌验证不当,可能导致权限提升。

Description (English)

IBM ApplinX is a modern Web-based application dedicated to the conversion of the green screen interface to the United States International Business Machine (IBM). Version 11.1 of IBM ApplinX contains a gap in data forgery, which stems from the inappropriate validation of JWT tokens, which may lead to an increase in privileges.

Hazard Level

Medium

Vulnerability Type

数据伪造问题

Affected Vendor

国际商业机器

Published

2026-01-20

Last Modified

2026-02-24

References

https://www.ibm.com/support/pages/node/7257446 https://access.redhat.com/security/cve/cve-2025-36418

Patch

https://www.ibm.com/support/pages/node/7257446

Share on: