CVE-2022-22334: Medium severity IBM Robotic Process Automation vulnerability
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a user to access information from a tenant of which they should not have access. IBM X-Force ID: 219391.
Other sources
IBM Robotic Process Automation could allow a user to access information from a tenant of which they should not have access.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22334?
CVE-2022-22334 is considered a high severity vulnerability due to unauthorized access to sensitive tenant information.
How do I fix CVE-2022-22334?
To remediate CVE-2022-22334, upgrade IBM Robotic Process Automation to versions higher than 21.0.1.7 or 21.0.2.5.
What versions of IBM Robotic Process Automation are affected by CVE-2022-22334?
CVE-2022-22334 affects IBM Robotic Process Automation versions 21.0.0, 21.0.1, and 21.0.2.
What is the exploitation impact of CVE-2022-22334?
Exploitation of CVE-2022-22334 allows unauthorized users to gain access to information from protected tenants.
Is CVE-2022-22334 present in IBM Robotic Process Automation as a Service?
Yes, CVE-2022-22334 can affect IBM Robotic Process Automation as a Service, especially if using vulnerable versions.