cvelist/2022/40xxx/CVE-2022-40230.json

63 lines
1.9 KiB
JSON
Raw Normal View History

2022-09-08 16:00:35 +00:00
{
2022-11-04 01:00:34 +00:00
"data_version": "4.0",
2022-09-08 16:00:35 +00:00
"data_type": "CVE",
"data_format": "MITRE",
"CVE_data_meta": {
"ID": "CVE-2022-40230",
2022-11-03 20:00:35 +00:00
"ASSIGNER": "psirt@us.ibm.com",
"STATE": "PUBLIC"
},
2022-11-04 01:00:34 +00:00
"description": {
"description_data": [
{
"lang": "eng",
"value": "\"IBM MQ Appliance 9.2 CD, 9.2 LTS, 9.3 CD, and LTS 9.3 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 235532.\""
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Session Fixation"
}
]
}
]
},
2022-11-03 20:00:35 +00:00
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "IBM MQ Appliance ",
"version": {
"version_data": [
{
2022-11-04 01:00:34 +00:00
"version_value": "\"9.2 CD, 9.2 LTS, 9.3 CD, and LTS 9.3\"",
"version_affected": "="
2022-11-03 20:00:35 +00:00
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
2022-11-04 01:00:34 +00:00
"url": "https://www.ibm.com/support/pages/node/6622051",
2022-11-03 20:00:35 +00:00
"refsource": "MISC",
2022-11-04 01:00:34 +00:00
"name": "https://www.ibm.com/support/pages/node/6622051"
2022-09-08 16:00:35 +00:00
}
]
}
}