First published: Mon Aug 21 2023(Updated: )
IBM Robotic Process Automation 21.0.0 through 21.0.7 server could allow an authenticated user to view sensitive information from application logs. IBM X-Force ID: 262289.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Robotic Process Automation | >=21.0.0<=21.0.7 | |
IBM Robotic Process Automation for Cloud Pak | >=21.0.0<=21.0.7 | |
Redhat Openshift | ||
Microsoft Windows | ||
<=21.0.0 - 21.0.7 | ||
<=21.0.0 - 21.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this IBM Robotic Process Automation server vulnerability is CVE-2023-38732.
The severity of CVE-2023-38732 vulnerability is medium with a severity value of 4.3.
The affected software for this vulnerability includes IBM Robotic Process Automation server versions 21.0.0 through 21.0.7, IBM Robotic Process Automation for Cloud Pak versions 21.0.0 through 21.0.7, and IBM Robotic Process Automation versions 21.0.0 through 21.0.7.
An authenticated user can exploit this vulnerability to view sensitive information from application logs.
To fix this vulnerability, update your IBM Robotic Process Automation server to version 21.0.8 or higher.