IBM Navigator for i 7.2, 7.3, and 7.4 (heritage version) could allow a remote attacker to obtain access to the web interface without valid credentials. By modifying the sign on request, an attacker can gain visibility to the fully qualified domain name of the target system and the navigator tasks page, however they do not gain the ability to perform those tasks on the system or see any specific system data. IBM X-Force ID: 225899.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2022-05-09T16:35:21.457903Z
Updated: 2024-09-17T02:57:43.591Z
Reserved: 2022-01-03T00:00:00
Link: CVE-2022-22481
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-05-09T17:15:09.077
Modified: 2024-11-21T06:46:52.480
Link: CVE-2022-22481
Redhat
No data.