First published: Fri Jul 08 2022(Updated: )
IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.7 and Open Liberty are vulnerable to identity spoofing by an authenticated user using a specially crafted request. IBM X-Force ID: 225604.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Open Liberty | >=17.0.0.3<22.0.0.8 | |
Ibm Websphere Application Server | >=17.0.0.3<22.0.0.8 | |
IBM Spectrum Control | <=5.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-22476.
The severity of CVE-2022-22476 is high with a CVSS score of 8.8.
IBM WebSphere Application Server Liberty version 17.0.0.3 through 22.0.0.7 and Open Liberty versions up to 22.0.0.8 are affected.
This vulnerability allows an authenticated user to spoof their identity using a specially crafted request.
Yes, you can find more information about CVE-2022-22476 at the following references: [link1](https://exchange.xforce.ibmcloud.com/vulnerabilities/225604), [link2](https://www.ibm.com/support/pages/node/6602015), [link3](https://www.ibm.com/support/pages/node/6953617).