CVE-2022-32759: IBM Security Directory Server information disclosure
IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 uses insufficient session expiration which could allow an unauthorized user to obtain sensitive information. IBM X-Force ID: 228565.
Other sources
IBM Security Directory Server uses insufficient session expiration which could allow an unauthorized user to obtain sensitive information.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-32759?
CVE-2022-32759 has a medium severity rating due to its potential to allow unauthorized access to sensitive information.
How do I fix CVE-2022-32759?
To fix CVE-2022-32759, update IBM Security Directory Integrator to version 7.2.1 or later and IBM Security Verify Directory Integrator to version 10.0.1 or later.
What products are affected by CVE-2022-32759?
CVE-2022-32759 affects IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0.
Can CVE-2022-32759 lead to data breaches?
Yes, due to insufficient session expiration, CVE-2022-32759 could potentially lead to unauthorized access and data breaches.
What are the risks associated with CVE-2022-32759?
The risks associated with CVE-2022-32759 include exposure of sensitive information and possible unauthorized actions by attackers.