CVE-2022-22462: IBM Security Verify Governance, Identity Manager virtual appliance component information disclosure
IBM Security Verify Governance uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Other sources
IBM Security Verify Governance, Identity Manager virtual appliance component 10.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 225078.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-22462?
CVE-2022-22462 is a vulnerability found in IBM Security Verify Governance, Identity Manager virtual appliance component 10.0.1 that uses weaker than expected cryptographic algorithms, allowing an attacker to decrypt highly sensitive information.
How does CVE-2022-22462 affect IBM Security Verify Governance?
CVE-2022-22462 affects IBM Security Verify Governance by making it vulnerable to attackers decrypting highly sensitive information due to the use of weaker cryptographic algorithms.
What is the severity of CVE-2022-22462?
CVE-2022-22462 has a severity rating of 7.5 (high).
How can I fix CVE-2022-22462 in IBM Security Verify Governance?
To fix CVE-2022-22462 in IBM Security Verify Governance, it is recommended to update to a version that uses stronger cryptographic algorithms.
Where can I find more information about CVE-2022-22462?
More information about CVE-2022-22462 can be found on the IBM X-Force ID: 225078 page and the IBM support page.