First published: Fri Apr 01 2022(Updated: )
IBM Robotic Process Automation 21.0.1 could allow a register user on the system to physically delete a queue that could cause disruption for any scripts dependent on the queue. IBM X-Force ID: 218366.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Robotic Process Automation | <=< 21.0.1.2 | |
IBM Robotic Process Automation for Services | =21.0.1 | |
IBM Robotic Process Automation for Services | =21.0.1.2 | |
IBM Robotic Process Automation as a Service | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-22319 is classified as a medium severity vulnerability that can disrupt dependent scripts.
To mitigate CVE-2022-22319, users should upgrade IBM Robotic Process Automation to version 21.0.1.2 or later.
CVE-2022-22319 affects registered users of IBM Robotic Process Automation 21.0.1 and 21.0.1.2.
Exploiting CVE-2022-22319 allows a registered user to delete a queue, potentially disrupting any scripts that rely on it.
Yes, the patch for CVE-2022-22319 is included in the upgrade to IBM Robotic Process Automation 21.0.1.2.