IBM Sterling External Authentication Server information disclosure
CVE-2022-35720
2.3LOW
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 8 February 2023
What is CVE-2022-35720?
IBM Sterling External Authentication Server 6.1.0 and IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic algorithms during installation that could allow a local attacker to decrypt sensitive information. IBM X-Force ID: 231373.
Affected Version(s)
Sterling External Authentication Server 6.1.0
Sterling Secure Proxy 6.0.3