CVE-2025-1142: IBM Edge Application Manager server-side request forgery
IBM Edge Application Manager 4.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
IBM Edge is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1142?
CVE-2025-1142 is classified as a high-severity vulnerability due to the potential for unauthorized access and network enumeration.
How do I fix CVE-2025-1142?
To fix CVE-2025-1142, you should upgrade to the latest version of IBM Edge Application Manager beyond 4.5 where the vulnerability is patched.
Who is affected by CVE-2025-1142?
CVE-2025-1142 affects users of IBM Edge Application Manager version 4.5 and earlier.
What is the exploit method for CVE-2025-1142?
CVE-2025-1142 exploits server-side request forgery (SSRF), allowing attackers to send unauthorized requests from the server.
What impacts can CVE-2025-1142 have on a network?
CVE-2025-1142 can lead to network enumeration and may facilitate further attacks on vulnerable systems.