PT-2023-13230 · Ibm · Ibm Security Directory Suite Va

Published

2023-06-15

·

Updated

2023-06-21

·

CVE-2022-33159

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Security Directory Suite VA versions 8.0.1 through 8.0.1.19
Description The issue allows an authenticated user to read user credentials stored in plain clear text.
Recommendations For IBM Security Directory Suite VA versions 8.0.1 through 8.0.1.19, consider restricting access to sensitive areas where user credentials are stored until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Storage of Sensitive Information

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2022-33159

Affected Products

Ibm Security Directory Suite Va