CVE-2022-35646

IBM Security Verify Governance, Identity Manager 10.0.1 software component could allow an authenticated user to modify or cancel any other user's access request using man-in-the-middle techniques. IBM X-Force ID: 231096.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:security_verify_governance:10.0.1:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:-:*

History

07 Nov 2023, 03:49

Type Values Removed Values Added
Summary IBM Security Verify Governance, Identity Manager 10.0.1 software component could allow an authenticated user to modify or cancel any other user's access request using man-in-the-middle techniques. IBM X-Force ID: 231096. IBM Security Verify Governance, Identity Manager 10.0.1 software component could allow an authenticated user to modify or cancel any other user's access request using man-in-the-middle techniques. IBM X-Force ID: 231096.

Information

Published : 2022-12-22 20:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-35646

Mitre link : CVE-2022-35646

CVE.ORG link : CVE-2022-35646


JSON object : View

Products Affected

ibm

  • security_verify_governance
  • aix

linux

  • linux_kernel

microsoft

  • windows

oracle

  • solaris
CWE
CWE-287

Improper Authentication