CVE-2022-43860 Information

Description

IBM Navigator for i 7.3 7.4 and 7.5 could allow an authenticated user to obtain sensitive information they are authorized to but not while using this interface. By performing an SQL injection an attacker could see user profile attributes through this interface. IBM X-Force ID: 239305.

Reference

https://www.ibm.com/support/pages/node/6850801 https://exchange.xforce.ibmcloud.com/vulnerabilities/239305

Share on: