
Severity
Medium
Analysis Summary
CVE-2022-43917
IBM WebSphere Application Server 8.5 and 9.0 traditional container uses weaker than expected cryptographic keys that could allow an attacker to decrypt sensitive information. This affects only the containerized version of WebSphere Application Server traditional.
Impact
- Information Disclosure
Indicators Of Compromise
CVE
- CVE-2022-43917
Affected Vendors
IBM
Affected Products
- IBM WebSphere Application Server 8.5
- IBM WebSphere Application Server 9.0
Remediation
Refer to IBM Security Bulletin for patch, upgrade or suggested workaround information.