CVE-2025-36092: IBM Business Automation Insights improper input validation
IBM Business Automation Insights could allow an authenticated user to cause a denial of service due to the improper validation of input length.
Other sources
IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an authenticated user to cause a denial of service due to the improper validation of input length.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36092?
CVE-2025-36092 is classified as a denial of service vulnerability.
How do I fix CVE-2025-36092?
To fix CVE-2025-36092, apply the relevant security patch from IBM for affected versions.
What products are affected by CVE-2025-36092?
CVE-2025-36092 affects IBM Cloud Pak For Business Automation and IBM Business Automation Insights versions up to 25.0.0, 24.0.1, and 24.0.0.
Can an unauthenticated user exploit CVE-2025-36092?
No, CVE-2025-36092 can only be exploited by an authenticated user due to input validation issues.
What kind of attack is associated with CVE-2025-36092?
CVE-2025-36092 is associated with a denial of service attack that can disrupt service availability.