10
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Description
IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a remote attacker to execute arbitrary commands due to improper process controls. This addresses additional attack vectors for a vulnerability that was previously addressed in CVE-2024-56346.
AI Analysis
Remote code execution vulnerability in IBM AIX 7.2, 7.3, and IBM VIOS 3.1, 4.1 due to improper process controls
Basic Information
ID
CVE-2025-36250
Source
ibm
Published
Nov 13, 2025 at 22:01
Affected Product
Vendor
IBM
Product
AIX
Version
7.2
Affected Versions
IBM AIX 7.2
IBM AIX 7.3
IBM VIOS 3.1
IBM VIOS 4.1
IBM AIX 7.3
IBM VIOS 3.1
IBM VIOS 4.1
CWE Classification
AI Assessment
AI Score
10 / 10
AI Severity
Critical
Vendor
IBM
Product
AIX, VIOS
Version
7.2, 7.3, 3.1, 4.1