CVE-2022-30616: High severity IBM Robotic Process Automation vulnerability
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a privileged user to elevate their privilege to platform administrator through manipulation of APIs. IBM X-Force ID: 227978.
Other sources
IBM Robotic Process Automation could allow a privileged user to elevate their privilege to platform administrator through manipulation of APIs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-30616?
CVE-2022-30616 has been classified with a significant severity due to its potential for privilege escalation.
How do I fix CVE-2022-30616?
To mitigate CVE-2022-30616, upgrade IBM Robotic Process Automation to version 21.0.3 or later.
Who is affected by CVE-2022-30616?
CVE-2022-30616 affects users of IBM Robotic Process Automation versions 21.0.0, 21.0.1, and 21.0.2.
What kind of attack does CVE-2022-30616 facilitate?
CVE-2022-30616 allows a privileged user to elevate their privileges to platform administrator through API manipulation.
Is there a workaround for CVE-2022-30616?
Currently, the recommended action for CVE-2022-30616 is to upgrade to a non-vulnerable version rather than relying on a workaround.