cve/2022/CVE-2022-22323.md

18 lines
882 B
Markdown
Raw Permalink Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2022-22323](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22323)
![](https://img.shields.io/static/v1?label=Product&message=Security%20Verify%20Password%20Synchronization%20Plug-in%20for%20Windows%20AD&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Denial%20of%20Service&color=brighgreen)
### Description
IBM Security Identity Manager (IBM Security Verify Password Synchronization Plug-in for Windows AD 10.x) is vulnerable to a denial of service, caused by a heap-based buffer overflow in the Password Synch Plug-in. An authenticated attacker could exploit this vulnerability to cause a denial of service. IBM X-Force ID: 218379.
### POC
#### Reference
- https://www.ibm.com/support/pages/node/6574671
#### Github
No PoCs found on GitHub currently.