CVE-2022-22464: Weak Encryption
IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 225081.
Other sources
IBM Security Access Manager Appliance uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22464?
The severity of CVE-2022-22464 is high with a score of 7.5.
What is the impact of CVE-2022-22464?
CVE-2022-22464 could allow an attacker to decrypt highly sensitive information.
Which versions of IBM Security Access Manager Appliance are affected by CVE-2022-22464?
IBM Security Access Manager Appliance versions 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 are affected by CVE-2022-22464.
How can an attacker exploit CVE-2022-22464?
An attacker can exploit CVE-2022-22464 by using weaker than expected cryptographic algorithms to decrypt highly sensitive information.
How can I protect my IBM Security Access Manager Appliance from CVE-2022-22464?
To protect your IBM Security Access Manager Appliance from CVE-2022-22464, update to a version that uses stronger cryptographic algorithms.