CVE-2025-33080: IBM Concert Software vulnerability
Published Dec 22, 2025
·Updated
IBM Concert Software could allow a remote attacker to cause a denial of service due to improper configuration of HTTP keep alive that could consume server resources.
Affected Software
1 affected component
IBM Concert Software<=1.0.0-2.1.0
Event History
Dec 22, 2025
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-33080?
CVE-2025-33080 is classified as a critical vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2025-33080?
To fix CVE-2025-33080, ensure that HTTP keep-alive settings are properly configured to prevent excessive resource consumption.
3
What versions of IBM Concert Software are affected by CVE-2025-33080?
IBM Concert Software versions from 1.0.0 up to and including 2.1.0 are affected by CVE-2025-33080.
4
What impact does CVE-2025-33080 have on affected systems?
CVE-2025-33080 can lead to denial of service, making the application unavailable to legitimate users.
5
Who can exploit CVE-2025-33080?
CVE-2025-33080 can be exploited by remote attackers who can manipulate HTTP keep-alive connections.