First published: Mon Jun 27 2022(Updated: )
IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 225081.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access | <=10.0.0 | |
IBM Security Verify Access | =10.0.0.0 | |
IBM Security Verify Access | =10.0.1.0 | |
IBM Security Verify Access | =10.0.2.0 | |
IBM Security Verify Access | =10.0.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-22464 is high with a score of 7.5.
CVE-2022-22464 could allow an attacker to decrypt highly sensitive information.
IBM Security Access Manager Appliance versions 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 are affected by CVE-2022-22464.
An attacker can exploit CVE-2022-22464 by using weaker than expected cryptographic algorithms to decrypt highly sensitive information.
To protect your IBM Security Access Manager Appliance from CVE-2022-22464, update to a version that uses stronger cryptographic algorithms.