IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.9 are vulnerable to HTTP header injection, caused by improper validation. This could allow an attacker to conduct various attacks against the vulnerable system, including cache poisoning and cross-site scripting. IBM X-Force ID: 229429.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2022-09-09T16:00:15.228171Z

Updated: 2024-09-17T00:32:21.129Z

Reserved: 2022-06-20T00:00:00

Link: CVE-2022-34165

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-09-09T16:15:08.933

Modified: 2023-08-08T14:21:49.707

Link: CVE-2022-34165

cve-icon Redhat

No data.