First published: Fri Oct 21 2022(Updated: )
"IBM Robotic Process Automation 21.0.1, 21.0.2, 21.0.3, 21.0.4, and 21.0.5 is vulnerable to incorrect permission assignment which could allow access to application configurations. IBM X-Force ID: 238679."
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Robotic Process Automation for Services | <21.0.6 | |
IBM Robotic Process Automation for Cloud Pak | <21.0.6 | |
<=< 21.0.6 | ||
<=< 21.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this IBM Robotic Process Automation vulnerability is CVE-2022-43574.
The severity rating of CVE-2022-43574 is high, with a CVSS score of 7.5.
IBM Robotic Process Automation versions 21.0.1, 21.0.2, 21.0.3, 21.0.4, and 21.0.5 are affected by CVE-2022-43574.
To fix the CVE-2022-43574 vulnerability, you need to update your IBM Robotic Process Automation to version 21.0.6 or higher.
You can find more information about the CVE-2022-43574 vulnerability on the IBM support page (https://www.ibm.com/support/pages/node/6831645) and the IBM X-Force Exchange (https://exchange.xforce.ibmcloud.com/vulnerabilities/238679).