CVE-2025-36015: IBM Controller Denial of Service
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 could allow an authenticated user to cause a denial of service due to improper validation of a specified quantity size input.
Other sources
IBM Controller could allow an authenticated user to cause a denial of service due to improper validation of a specified quantity size input.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36015?
CVE-2025-36015 has been classified as a denial of service vulnerability affecting IBM Controller and IBM Cognos Controller.
How do I fix CVE-2025-36015?
To fix CVE-2025-36015, users should update to the latest versions of IBM Controller and IBM Cognos Controller that address this vulnerability.
Who is affected by CVE-2025-36015?
CVE-2025-36015 affects authenticated users of IBM Controller versions 11.1.0 through 11.1.1 and IBM Cognos Controller versions 11.0.0 through 11.0.1 FP6.
What kind of attack does CVE-2025-36015 facilitate?
CVE-2025-36015 allows authenticated users to launch denial of service attacks due to improper validation of input.
When was CVE-2025-36015 disclosed?
CVE-2025-36015 was disclosed as part of the identification of security issues within specific versions of IBM Controller and IBM Cognos Controller.