PT-2022-27042 · Ibm · Ibm Websphere Automation For Ibm Cloud Pak For Watson Aiops

Published

2022-12-01

·

Updated

2022-12-06

·

CVE-2022-43900

CVSS v3.1

6.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere Automation for IBM Cloud Pak for Watson AIOps version 1.4.2
Description A local attacker can create an outbound network connection to another system due to weaker than expected security in the software.
Recommendations For version 1.4.2, consider restricting outbound network connections to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-43900

Affected Products

Ibm Websphere Automation For Ibm Cloud Pak For Watson Aiops