Denial of Service Vulnerability in IBM WebSphere Application Server
CVE-2025-36097
7.5HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 16 July 2025
What is CVE-2025-36097?
IBM WebSphere Application Server and WebSphere Application Server Liberty are susceptible to a denial of service attack due to a stack-based overflow. An attacker can exploit this vulnerability by sending a specially crafted request, leading to excessive memory consumption and potentially disrupting the service's availability. This vulnerability affects multiple versions of the products, making it crucial for users to apply necessary patches and updates to safeguard their systems.
Affected Version(s)
WebSphere Application Server 9.0
WebSphere Application Server Liberty 17.0.0.3 <= 25.0.0.7