First published: Thu May 30 2024(Updated: )
IBM Security Verify Access OIDC Provider 22.09 through 23.03 could disclose sensitive information to a local user due to hazardous input validation. IBM X-Force ID: 279978.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access | <=22.09 - 23.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-22338 has been classified as a high-severity vulnerability due to its potential to disclose sensitive information.
To fix CVE-2024-22338, upgrade IBM Security Verify Access OIDC Provider to a version beyond 23.03.
CVE-2024-22338 affects IBM Security Verify Access OIDC Provider versions 22.09 through 23.03.
The risk associated with CVE-2024-22338 is that local users could gain unauthorized access to sensitive information.
CVE-2024-22338 was reported as a vulnerability in IBM Security Verify Access OIDC Provider in 2024.