First published: Mon Dec 19 2022(Updated: )
IBM Security Verify Governance, Identity Manager 10.01 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 224915.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Governance | =10.0.1 | |
Linux Linux kernel | ||
<=10.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-22449.
The severity of CVE-2022-22449 is medium.
The vulnerability allows a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser, which could be used in further attacks against the system.
IBM Security Verify Governance, Identity Manager version 10.0.1 is affected by CVE-2022-22449.
IBM has released a security advisory with remediation steps to address this vulnerability. Please refer to the IBM support page for more information.