CVE Vulnerabilities

CVE-2025-3218

Improper Certificate Validation

Published: May 07, 2025 | Modified: Jul 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 is vulnerable to authentication and authorization attacks due to incorrect validation processing in IBM i Netserver. A malicious actor could use the weaknesses, in conjunction with brute force authentication attacks or to bypass authority restrictions, to access the server.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Affected Software

Name Vendor Start Version End Version
I Ibm 7.2 (including) 7.2 (including)
I Ibm 7.3 (including) 7.3 (including)
I Ibm 7.4 (including) 7.4 (including)
I Ibm 7.5 (including) 7.5 (including)
I Ibm 7.6 (including) 7.6 (including)

Potential Mitigations

References