First published: Fri Oct 04 2024(Updated: )
IBM Security Verify Governance could disclose sensitive information in HTTP headers that could aid in further attacks against the system.
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Governance - Identity Manager | <=ISVG 10.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-22468 is classified as medium, indicating a moderate risk of information disclosure.
To mitigate CVE-2022-22468, upgrade to a version of IBM Security Verify Governance that exceeds ISVG 10.0.2.
CVE-2022-22468 can lead to the unintentional disclosure of sensitive information through HTTP headers.
As of now, there are no confirmed active exploits related to CVE-2022-22468.
Yes, if using versions up to and including ISVG 10.0.2, you should be concerned and should apply the necessary updates.