CVE-2019-4045: Medium severity ibm business automation workflow vulnerability
IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 provide embedded document management features. Because of a missing restriction in an API, a client might spoof the last modified by value of a document. IBM X-Force ID: 156241.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-4045?
CVE-2019-4045 is a vulnerability in IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 that allows a client to spoof the last modified by value of a document.
How severe is CVE-2019-4045?
CVE-2019-4045 has a severity score of 4.3, which is considered medium.
Which software versions are affected by CVE-2019-4045?
IBM Business Automation Workflow versions 18.0.0.0, 18.0.0.1, and 18.0.0.2, as well as IBM Business Process Manager versions 8.5.0.0 to 8.5.0.2 and 8.5.5.0 to 8.6.0.0, are affected by CVE-2019-4045.
What is the IBM X-Force ID for CVE-2019-4045?
The IBM X-Force ID for CVE-2019-4045 is 156241.
How can I learn more about CVE-2019-4045?
You can find more information about CVE-2019-4045 in the IBM Security Bulletin provided by IBM.