CVE-2025-36038: IBM WebSphere Application Server code execution
IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially crafted sequence of serialized objects.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36038?
CVE-2025-36038 is classified as a critical severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2025-36038?
To mitigate CVE-2025-36038, it is recommended to upgrade IBM WebSphere Application Server to the latest version that addresses this vulnerability.
What versions of IBM WebSphere Application Server are affected by CVE-2025-36038?
CVE-2025-36038 affects IBM WebSphere Application Server versions 8.5 and 9.0.
How can attackers exploit CVE-2025-36038?
Attackers can exploit CVE-2025-36038 by sending specially crafted serialized objects to the affected server.
What are the potential impacts of CVE-2025-36038?
The exploitation of CVE-2025-36038 could allow attackers to execute arbitrary code on the affected system, potentially leading to significant data breaches or service disruptions.