CVE Published: 01/02/2023 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: ibm |
Vendor: IBM |
Product: App Connect Enterprise Certified Container Status : PUBLISHED
CVE-2022-43922 Description
IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, and 6.2 could disclose sensitive information to an attacker due to a weak hash of an API Key in the configuration. IBM X-Force ID: 241583.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N