PT-2022-17418 · Unknown · Identity Manager

Hugo Boutinon

+1

·

Published

2022-12-16

·

Updated

2023-08-08

·

CVE-2022-25626

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Identity Manager (affected versions not specified)
Description An unauthenticated user can access specific page URLs of Identity Manager's management console. However, the system does not allow the user to carry out server-side tasks without a valid web session.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2022-25626

Affected Products

Identity Manager