IBM Navigator for i SQL injection
CVE-2022-43860
4.3MEDIUM
What is CVE-2022-43860?
IBM Navigator for i 7.3, 7.4, and 7.5 could allow an authenticated user to obtain sensitive information they are authorized to but not while using this interface. By performing an SQL injection an attacker could see user profile attributes through this interface. IBM X-Force ID: 239305.
Affected Version(s)
Navigator for i 7.3, 7.4, 7.5