ZeroHour

CVE-2022-38712

CVSS 3.1
5.9 medium
EPSS
<1%p42
Published
()
Modified
Description

"IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations. IBM X-Force ID: 234762."

Vendors
ibm
Products
websphere application server
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.