CVE-2022-35279: Medium severity ibm business automation workflow vulnerability
"IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2, 21.0.3, and 22.0.1 could disclose sensitive version information to authenticated users which could be used in further attacks against the system. IBM X-Force ID: 230537."
Other sources
IBM Business Automation Workflow could disclose sensitive version information to authenticated users which could be used in further attacks against the system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-35279?
CVE-2022-35279 is a vulnerability in IBM Business Automation Workflow that could disclose sensitive version information to authenticated users.
How does CVE-2022-35279 affect IBM Business Automation Workflow?
CVE-2022-35279 affects IBM Business Automation Workflow versions 18.0.0.0 to 18.0.0.2, 19.0.0.0 to 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2 to 21.0.3, and 22.0.1.
What is the severity of CVE-2022-35279?
CVE-2022-35279 has a severity level of medium with a CVSS score of 4.3.
How can authenticated users exploit CVE-2022-35279?
Authenticated users can exploit CVE-2022-35279 to obtain sensitive version information that could be used for further attacks against the system.
Where can I find more information about CVE-2022-35279?
You can find more information about CVE-2022-35279 at the IBM X-Force Exchange website and the IBM support pages.