CVE-2022-22384: IBM Security Verify Privilege improper input validation
Published Oct 5, 2023
·Updated
IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due to hazardous input validation. IBM X-Force ID: 221961.
Other sources
IBM Security Verify Privilege On-Premises could allow an attacker to modify messages returned from the server due to hazardous input validation.
— IBM
Affected Software
4 affected components
IBM Security Verify Privilege On-Premises<=All
IBM Security Verify Privilege On-Premises<11.5
macOS
Microsoft Windows
Remediation
Patch Available
Event History
Oct 5, 2023
CVE Published
via IBM·12:00 AM
Oct 17, 2023
CVE Published
via MITRE·12:43 AM
Data Sourced
via MITRE·12:43 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-22384.
2
What is the severity of CVE-2022-22384?
The severity of CVE-2022-22384 is medium with a severity value of 4.3.
3
What is the affected software for CVE-2022-22384?
The affected software for CVE-2022-22384 is IBM Security Verify Privilege On-Premises version All.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-20.
5
How can I fix CVE-2022-22384?
To fix CVE-2022-22384, update to the latest version of IBM Security Verify Privilege On-Premises.