4.3
CVSSv3

CVE-2022-22349

Published: 24/02/2022 Updated: 02/03/2022
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 357
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

IBM Sterling External Authentication Server 3.4.3.2, 6.0.2.0, and 6.0.3.0 is vulnerable to path traversals, due to not properly validating RESTAPI configuration data. An authorized user could import invalid data which could be used for an attack. IBM X-Force ID: 220144.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm sterling external authentication server 3.4.3.2

ibm sterling external authentication server 6.0.2.0

ibm sterling external authentication server 6.0.3.0