CVE-2023-22592: IBM Robotic Process Automation for Cloud Pak insufficient permission settings
IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.4 could allow a local user to perform unauthorized actions due to insufficient permission settings. IBM X-Force ID: 244073.
Other sources
IBM Robotic Process Automation for Cloud Pak could allow a local user to perform unauthorized actions due to insufficient permission settings.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22592?
The severity of CVE-2023-22592 is high with a value of 7.8.
What is the description of CVE-2023-22592?
CVE-2023-22592 is a vulnerability in IBM Robotic Process Automation for Cloud Pak versions 21.0.1 through 21.0.4 that could allow a local user to perform unauthorized actions due to insufficient permission settings.
Which software is affected by CVE-2023-22592?
IBM Robotic Process Automation for Cloud Pak versions 21.0.1 through 21.0.4 are affected by CVE-2023-22592.
How can I fix CVE-2023-22592?
To fix CVE-2023-22592, upgrade IBM Robotic Process Automation for Cloud Pak to version 21.0.5 or higher.
Where can I find more information about CVE-2023-22592?
More information about CVE-2023-22592 can be found at the following references: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/244073) and [Reference 2](https://www.ibm.com/support/pages/node/6855839).