Authors: Created by IBM


IBM WebSphere Application Server Liberty is vulnerable to identity spoofing with the appSecurity-1.0, appSecurity-2.0, appSecurity-3.0 or appSecurity-4.0 feature enabled.This has been addressed. CVEID:  CVE-2022-22476[1]
DESCRIPTION:  IBM WebSphere Application Server Liberty and Open Liberty are vulnerable to identity spoofing by an authenticated user using a specially crafted request.
CVSS Base score:5
CVSS Temporal Score:See:https://exchange.xforce.ibmcloud.com/vulnerabilities/225604[2]...

Just published by IBM: Read more