Back to Database
Status published
Critical
CVE-2025-11548
ibi WebFOCUS - Unauthenticated RCE Vulnerability
Vulnerability Description
A remote, unauthenticated privilege escalation in ibi WebFOCUS allows an attacker to gain administrative access to the application which may lead to unauthenticated Remote Code Execution
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-11548
Credits & Attribution
No credits recorded in the NVD database.
More from ibi
View All →Affected Vendor
Affected Software
WebFOCUS
Vulnerable Versions:
9.1, 9.2
Timeline
Official Publish:
October 14th, 2025
Last Modified:
October 14th, 2025
Added to House:
July 22nd, 2026