CVE-2022-42443

LOW

IBM Trusteer Android SDK For Mobile < 5.7 - Unrestricted File Upload

Title source: rule
STIX 2.1

Description

An undisclosed issue in Trusteer iOS SDK for mobile versions prior to 5.7 and Trusteer Android SDK for mobile versions prior to 5.7 may allow uploading of files. IBM X-Force ID: 238535.

References (2)

Core 2
Core References
Vendor Advisory vendor-advisory
https://www.ibm.com/support/pages/node/6967785

Scores

CVSS v3 2.2
EPSS 0.0006
EPSS Percentile 19.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-434
Status published
Products (2)
ibm/trusteer_android_sdk_for_mobile < 5.7
ibm/trusteer_ios_sdk_for_mobile < 5.7
Published Feb 17, 2024
Tracked Since Feb 18, 2026