Junglewise Threat Intelligence

CVE-2025-36085: IBM Concert 1.0.0 through 2.0.0 Software is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to se

CVE-2025-36085 · Severity: medium · CVSS 5.4 · Published 2025-10-28

Technologies: IBM Concert, Linux Kernel. Vendors: IBM, Linux.

Executive brief

IBM Concert 1.0.0 through 2.0.0 Software is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

Affected products

  • IBM concert
  • Linux linux_kernel

Related threats