PT-2023-14384 · Ibm · Ibm Security Verify Privilege On-Premises

CVE-2022-43889

·

Published

2023-10-16

·

Updated

2023-10-18

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Security Verify Privilege On-Premises version 11.5
Description The issue could disclose sensitive information through an HTTP request, potentially aiding an attacker in further attacks against the system.
Recommendations For IBM Security Verify Privilege On-Premises version 11.5, consider restricting access to sensitive information and limiting the use of HTTP requests until a fix is available. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-43889

Affected Products

Ibm Security Verify Privilege On-Premises