CVE-2022-44756: HCL BigFix Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation
Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation. This may lead to information disclosure. This requires privileged access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-44756.
What is the title of this vulnerability?
The title of this vulnerability is 'Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation.'
What can happen if this vulnerability is exploited?
If this vulnerability is exploited, it may lead to information disclosure.
How severe is this vulnerability?
This vulnerability has a severity keyword of 'medium' and a severity value of 6.5.
Is privileged access required to exploit this vulnerability?
Yes, privileged access is required to exploit this vulnerability.
What software is affected by this vulnerability?
Insights for Vulnerability Remediation (IVR) version 2.0 is affected by this vulnerability.
Is there a fix available for this vulnerability?
Please refer to the following link for information on how to fix this vulnerability: [link](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0102168).
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is 20.