Rewterz
Rewterz Threat Advisory – CVE-2023-23477 – IBM WebSphere Application Server Vulnerability
February 7, 2023
Rewterz
Rewterz Threat Alert – DarkComet RAT (Remote Access Trojan) – Active IOCs
February 8, 2023

Rewterz Threat Advisory – CVE-2022-43922 – IBM App Connect Enterprise Certified Container Vulnerability

Severity

Medium

Analysis Summary

CVE-2022-43922

IBM App Connect Enterprise Certified Container could disclose sensitive information to an attacker due to a weak hash of an API Key in the configuration.

Impact

  • Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2022-43922

Affected Vendors

IBM

Affected Products

  • IBM App Connect Enterprise Certified Container 4.1
  • IBM App Connect Enterprise Certified Container 5.0
  • IBM App Connect Enterprise Certified Container 5.1
  • IBM App Connect Enterprise Certified Container 5.2
  • IBM App Connect Enterprise Certified Container 6.0
  • IBM App Connect Enterprise Certified Container 6.1
  • IBM App Connect Enterprise Certified Container 6.2
  • IBM App Connect Enterprise Certified Container 4.2

Remediation

Refer to IBM Security Bulletin for patch, upgrade or suggested workaround information.

IBM Security Bulletin