CVE-2022-32759

Severity
7.5HIGH
EPSS
0.1%
top 70.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 25

Description

IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 uses insufficient session expiration which could allow an unauthorized user to obtain sensitive information. IBM X-Force ID: 228565.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

🔴Vulnerability Details

2
GHSA
GHSA-whqg-8c4f-4gwx: IBM Security Directory Integrator 72024-07-25
CVEList
IBM Security Directory Server information disclosure2024-07-25
CVE-2022-32759 (HIGH CVSS 7.5) | IBM Security Directory Integrator 7 | cvebase.io