CVE-2022-22393: Medium severity ibm open liberty vulnerability
IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.5 , with the adminCenter-1.0 feature configured, could allow an authenticated user to issue a request to obtain the status of HTTP/HTTPS ports which are accessible by the application server. IBM X-Force ID: 222078.
Other sources
IBM WebSphere Application Server Liberty, with the adminCenter-1.0 feature configured, could allow an authenticated user to issue a request to obtain the status of HTTP/HTTPS ports which are accessible by the application server.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-22393.
What is the severity of CVE-2022-22393?
The severity of CVE-2022-22393 is medium.
How does CVE-2022-22393 impact IBM WebSphere Application Server Liberty?
CVE-2022-22393 allows an authenticated user to obtain the status of HTTP/HTTPS ports accessible by the application server.
Which versions of IBM WebSphere Application Server Liberty are affected by CVE-2022-22393?
IBM WebSphere Application Server Liberty versions 17.0.0.3 through 22.0.0.5 are affected by CVE-2022-22393.
Is there a fix available for CVE-2022-22393?
Please refer to IBM's support page at https://www.ibm.com/support/pages/node/6585704 for information on available fixes.