CVE-2022-1224: Improper Authorization in phpipam/phpipam
Published Apr 4, 2022
·Updated
Improper Authorization in GitHub repository phpipam/phpipam prior to 1.4.6.
Affected Software
1 affected component
Phpipam Phpipam<1.4.6
Remediation
Event History
Apr 4, 2022
CVE Published
via MITRE·10:45 AM
Data Sourced
via MITRE·10:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-1224?
The severity of CVE-2022-1224 is medium with a CVSSv3 score of 6.5.
2
What is the affected software of CVE-2022-1224?
The affected software of CVE-2022-1224 is Phpipam Phpipam prior to version 1.4.6.
3
How can I fix CVE-2022-1224?
To fix CVE-2022-1224, you should update Phpipam Phpipam to version 1.4.6 or later.
4
What is the CWE of CVE-2022-1224?
The CWE of CVE-2022-1224 are CWE-863 (Incorrect Authorization) and CWE-285 (Improper Authorization).
5
Where can I find more information about CVE-2022-1224?
You can find more information about CVE-2022-1224 at the following references: [GitHub Commit](https://github.com/phpipam/phpipam/commit/f6a49fd9f93b7d7e0a4fbf1d35338502eed35953) and [Huntr.dev](https://huntr.dev/bounties/cd9e1508-5682-427e-a921-14b4f520b85a).