

Rewterz Threat Advisory – CVE-2023-23477 – IBM WebSphere Application Server Vulnerability
February 7, 2023
Rewterz Threat Alert – DarkComet RAT (Remote Access Trojan) – Active IOCs
February 8, 2023
Rewterz Threat Advisory – CVE-2023-23477 – IBM WebSphere Application Server Vulnerability
February 7, 2023
Rewterz Threat Alert – DarkComet RAT (Remote Access Trojan) – Active IOCs
February 8, 2023Severity
Medium
Analysis Summary
CVE-2022-43922
IBM App Connect Enterprise Certified Container could disclose sensitive information to an attacker due to a weak hash of an API Key in the configuration.
Impact
- Information Disclosure
Indicators Of Compromise
CVE
- CVE-2022-43922
Affected Vendors
IBM
Affected Products
- IBM App Connect Enterprise Certified Container 4.1
- IBM App Connect Enterprise Certified Container 5.0
- IBM App Connect Enterprise Certified Container 5.1
- IBM App Connect Enterprise Certified Container 5.2
- IBM App Connect Enterprise Certified Container 6.0
- IBM App Connect Enterprise Certified Container 6.1
- IBM App Connect Enterprise Certified Container 6.2
- IBM App Connect Enterprise Certified Container 4.2
Remediation
Refer to IBM Security Bulletin for patch, upgrade or suggested workaround information.