Home
CRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:NDefault status
unaffected
9.1 (Patch)
affected
9.2 (Patch)
affected
Description
A remote, unauthenticated privilege escalation in ibi WebFOCUS allows an attacker to gain administrative access to the application which may lead to unauthenticated Remote Code Execution
Problem types
CWE-94 Improper Control of Generation of Code ('Code Injection')
Product status
9.1 (Patch)
9.2 (Patch)
References
community.tibco.com/...025-ibi-webfocus-cve-2025-11548-r222/