CVE-2021-39046: Medium severity ibm business automation workflow vulnerability
IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 stores user credentials in plain clear text which can be read by a lprivileged user. IBM X-Force ID: 214346.
Other sources
IBM Business Automation Workflow stores user credentials in plain clear text which can be read by a lprivileged user.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-39046?
The severity of CVE-2021-39046 is medium with a severity value of 4.9.
Which IBM products are affected by CVE-2021-39046?
IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 are affected by CVE-2021-39046.
How does CVE-2021-39046 impact user credentials?
CVE-2021-39046 allows a privileged user to read user credentials stored in plain clear text.
What is the Common Weakness Enumeration (CWE) of CVE-2021-39046?
The Common Weakness Enumeration (CWE) of CVE-2021-39046 is CWE-522.
Where can I find more information about CVE-2021-39046?
You can find more information about CVE-2021-39046 on the IBM X-Force Exchange website and the IBM support pages.