First published: Thu Oct 05 2023(Updated: )
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 240454.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Privilege On-Premises | <=All | |
IBM Security Verify Privilege On-Premises | <11.5 | |
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-43891.
The title of the vulnerability is IBM Security Verify Privilege On-Premises could allow a remote attacker to obtain sensitive information.
The severity of the vulnerability is low with a CVSS score of 2.7.
IBM Security Verify Privilege On-Premises versions 11.5 and below are affected by this vulnerability.
A remote attacker can exploit this vulnerability by obtaining sensitive information from a detailed technical error message returned in the browser.