IBM Navigator for i 7.2, 7.3, and 7.4 (heritage version) could allow a remote attacker to obtain access to the web interface without valid credentials. By modifying the sign on request, an attacker can gain visibility to the fully qualified domain name of the target system and the navigator tasks page, however they do not gain the ability to perform those tasks on the system or see any specific system data. IBM X-Force ID: 225899.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2022-05-09T16:35:21.457903Z

Updated: 2024-09-17T02:57:43.591Z

Reserved: 2022-01-03T00:00:00

Link: CVE-2022-22481

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-05-09T17:15:09.077

Modified: 2023-08-08T14:22:24.967

Link: CVE-2022-22481

cve-icon Redhat

No data.