CVE-2022-22468: Medium severity ibm security verify governance - identity manager vulnerability
Published Oct 4, 2024
·Updated
IBM Security Verify Governance could disclose sensitive information in HTTP headers that could aid in further attacks against the system.
Affected Software
1 affected component
IBM Security Verify Governance<=ISVG 10.0.2
Event History
Oct 4, 2024
CVE Published
via IBM·12:00 AM
Frequently Asked Questions
1
What is the severity of CVE-2022-22468?
The severity of CVE-2022-22468 is classified as medium, indicating a moderate risk of information disclosure.
2
How do I fix CVE-2022-22468?
To mitigate CVE-2022-22468, upgrade to a version of IBM Security Verify Governance that exceeds ISVG 10.0.2.
3
What impacts can CVE-2022-22468 have on my system?
CVE-2022-22468 can lead to the unintentional disclosure of sensitive information through HTTP headers.
4
Is CVE-2022-22468 active in the wild?
As of now, there are no confirmed active exploits related to CVE-2022-22468.
5
Should I be concerned about CVE-2022-22468 if I’m using older software versions?
Yes, if using versions up to and including ISVG 10.0.2, you should be concerned and should apply the necessary updates.