IBM Controller是美国国际商业机器(IBM)公司的一个基于 Web 的财务合并工具。 IBM Controller 11.1.0版本至11.1.1版本存在安全漏洞,该漏洞源于环境变量文件中存储未加密的敏感信息,可能导致信息泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Controller | 11.1.0 ~ 11.1.1 |
cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-36015 | 6.5 MEDIUM | IBM Controller Denial of Service |
| CVE-2025-64650 | 6.5 MEDIUM | IBM Storage Defender - Resiliency Service Information Disclosure |
| CVE-2025-36140 | 6.5 MEDIUM | IBM watsonx.data Denial of Service |
| CVE-2025-12635 | 5.4 MEDIUM | IBM WebSphere Application Server and WebSphere Application Server Liberty Cross-Site Scrip |
| CVE-2025-12832 | 4.6 MEDIUM | IBM InfoSphere Information Server Server-Side Request Forgery |
| CVE-2025-33111 | 4.3 MEDIUM | IBM Controller Information Disclosure |
| CVE-2025-36102 | 2.7 LOW | IBM Controller Validation Bypass |
No comments yet