First published: Wed Jun 29 2022(Updated: )
IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14 could allow a remote attacker to gain details of the database, such as type and version, by sending a specially-crafted HTTP request. This information could then be used in future attacks. IBM X-Force ID: 226940.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Operations Center | >=8.1.0.000<=8.1.14.000 | |
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
<=8.1.0.000-8.1.14.xxx |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-22494.
The severity level of CVE-2022-22494 is medium (5.3).
IBM Spectrum Protect Operations Center versions 8.1.0.000 through 8.1.14 are affected by CVE-2022-22494.
A remote attacker can exploit CVE-2022-22494 by sending a specially-crafted HTTP request to gain details of the database.
No, IBM AIX, Linux, and Windows are not vulnerable to CVE-2022-22494.
You can find more information about CVE-2022-22494 on the IBM X-Force ID: 226940 page.