CVE-2022-33159: IBM Security Directory Suite VA information disclosure
IBM Security Directory Server stores user credentials in plain clear text which can be read by an authenticated user.
Other sources
IBM Security Directory Suite VA 8.0.1 through 8.0.1.19 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 228567.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Security Directory Server vulnerability?
The vulnerability ID for this IBM Security Directory Server vulnerability is CVE-2022-33159.
What is the severity of CVE-2022-33159?
The severity of CVE-2022-33159 is medium.
Which IBM product is affected by CVE-2022-33159?
IBM Security Directory Suite VA is affected by CVE-2022-33159.
How does CVE-2022-33159 impact IBM Security Directory Suite VA?
CVE-2022-33159 allows an authenticated user to read user credentials in plain clear text in IBM Security Directory Suite VA.
Where can I find more information about CVE-2022-33159?
You can find more information about CVE-2022-33159 at the following links: [link1](https://exchange.xforce.ibmcloud.com/vulnerabilities/228567), [link2](https://www.ibm.com/support/pages/node/7001693).