Denial of Service Vulnerability in IBM Cloud Pak For Business Automation
CVE-2025-36092

6.5MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
3 November 2025

What is CVE-2025-36092?

A vulnerability exists in IBM Cloud Pak For Business Automation that can be exploited by an authenticated user, potentially leading to denial of service. This weakness is caused by inadequate input length validation, resulting in the application being unable to handle specific requests properly. Users of affected versions should implement security patches to mitigate risk and enhance overall system reliability.

Affected Version(s)

Cloud Pak For Business Automation 25.0.0

Cloud Pak For Business Automation 24.0.1

Cloud Pak For Business Automation 24.0.0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-36092 : Denial of Service Vulnerability in IBM Cloud Pak For Business Automation