Local Information Disclosure in IBM Spectrum Protect Operations Center
CVE-2022-22484
5.1MEDIUM
What is CVE-2022-22484?
IBM Spectrum Protect Operations Center versions 8.1.12 and 8.1.13 are susceptible to a vulnerability that may expose plain text user account passwords within the browser's application command history. This can enable a local attacker to retrieve stored passwords by accessing the browser history, resulting in unauthorized access to other user accounts. Organizations using these versions should take immediate action to mitigate this risk and secure their user credentials.
Affected Version(s)
Spectrum Protect Operations Center 8.1.13
Spectrum Protect Operations Center 8.1.12