CVE-2022-43892

Severity
5.3MEDIUM
EPSS
0.1%
top 82.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 17
Latest updateJan 15

Description

IBM Security Verify Privilege On-Premises 11.5 does not validate, or incorrectly validates, a certificate which could disclose sensitive information which could aid further attacks against the system. IBM X-Force ID: 240455.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 2.2 | Impact: 1.4

Affected Packages2 packages

Patches

🔴Vulnerability Details

4
OSV
linux-raspi-5.4 vulnerabilities2025-01-15
OSV
linux, linux-gcp, linux-gcp-5.4, linux-hwe-5.4, linux-kvm, linux-raspi vulnerabilities2024-12-17
GHSA
GHSA-xgf4-vh79-4g7j: IBM Security Verify Privilege On-Premises 112023-10-17
CVEList
IBM Security Verify Privilege information disclosure2023-10-17
CVE-2022-43892 (MEDIUM CVSS 5.3) | IBM Security Verify Privilege On-Pr | cvebase.io