Source |
CVE Liste |
Identifiant |
8294389 |
Date de publication |
2022-12-24 00:15:08 (vue: 2022-12-24 02:06:56) |
Titre |
CVE-2022-43860 |
Texte |
IBM Navigator for i 7.3, 7.4, and 7.5 could allow an authenticated user to obtain sensitive information they are authorized to but not while using this interface. By performing an SQL injection an attacker could see user profile attributes through this interface. IBM X-Force ID: 239305. |
Notes |
|
Envoyé |
Oui |
Condensat |
2022 239305 43860 allow are attacker attributes authenticated authorized but could cve force ibm id: information injection interface navigator not obtain performing profile see sensitive sql through user using |
Tags |
|
Stories |
|
Move |
|