VDB

CVE-2022-23540

CVE-2022-23540 PUBLISHED

Es existiert eine Schwachstelle in IBM Integration Bus, aufgund eines unsicheren Standardalgorithmus in der Funktion "jwt.verify()" in "Auth0 jsonwebtoken". Ein authentisierter Angreifer kann das ausnutzen, um Sicherheitsvorkehrungen zu umgehen.

EPSS 0.02% · 6.9th percentile

Risk Scores

EPSS Score
0.02%
6.9th percentile

Affected Products

VendorProductVersions
Red HatRed Hat Enterprise Linux Advanced Cluster Security for Kubernetes 4
GentooGentoo Linux
AtlassianAtlassian Bitbucket <8.19.25 (LTS)
Red HatRed Hat OpenShift Data Foundation <4.13.0
IBMIBM Tivoli Business Service Manager 6.2.0
Red HatRed Hat Enterprise Linux Service Interconnect 1
Red HatRed Hat OpenShift Container Platform <4.11.44
HCLHCL BigFix
Red HatRed Hat OpenShift Container Platform <4.12.22
Red HatRed Hat OpenShift Container Platform <4.14.0
IBMIBM Integration Bus 10.0.0.0 - 10.0.0.26
IBMIBM MQ 9.2
FedoraFedora Linux
Red HatRed Hat OpenShift
Red HatRed Hat OpenShift Container Platform 4.12
OracleOracle Linux
Red HatRed Hat OpenShift Container Platform <4.13.4
IBMIBM MQ 9.0
IBMIBM MQ 9.1
Red HatRed Hat OpenShift Container Platform <4.12.46

…and 5 more

Exploit Intelligence

…and 7 more exploits

Timeline

  • Dec 22, 2022 CVE Published
  • Dec 23, 2022 EPSS Score
  • Jan 18, 2023 EPSS Score
  • Feb 3, 2023 EPSS Score
  • Feb 28, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 27, 2023 EPSS Score
  • Jun 7, 2023 EPSS Score
  • Jul 19, 2023 EPSS Score
  • Aug 29, 2023 EPSS Score
  • Oct 10, 2023 EPSS Score
  • Nov 20, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›