CVE-2022-22365 is a vulnerability in IBM WebSphere Application Server
Published on May 20, 2022
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0, with the Ajax Proxy Web Application (AjaxProxy.war) deployed, is vulnerable to spoofing by allowing a man-in-the-middle attacker to spoof SSL server hostnames. IBM X-Force ID: 220904.
Products Associated with CVE-2022-22365
Want to know whenever a new CVE is published for IBM WebSphere Application Server? stack.watch will email you.
Affected Versions
IBM WebSphere Application Server:- Version 7.0 is affected.
- Version 8.0 is affected.
- Version 8.5 is affected.
- Version 9.0 is affected.
Exploit Probability
EPSS
0.24%
Percentile
46.78%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.