CVE-2022-22322: XSS
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 218370.
Other sources
IBM InfoSphere Information Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-22322.
What is the severity rating of CVE-2022-22322?
CVE-2022-22322 has a severity rating of 5.4, which is considered medium.
What is the affected software?
The affected software is IBM InfoSphere Information Server version 11.7.
What is the risk of the vulnerability?
The vulnerability allows users to embed arbitrary JavaScript code in the Web UI, potentially leading to credentials disclosure.
How can I fix the vulnerability?
To fix the vulnerability, apply the patch provided by IBM at the following URL: https://www.ibm.com/support/pages/node/878310