First published: Wed Oct 04 2023(Updated: )
IBM Robotic Process Automation 23.0.9 is vulnerable to privilege escalation that affects ownership of projects. IBM X-Force ID: 247527.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Robotic Process Automation for Cloud Pak | <=23.0.9 | |
IBM Robotic Process Automation | <=23.0.9 | |
IBM Robotic Process Automation | =23.0.9 | |
IBM Robotic Process Automation for Cloud Pak | =23.0.9 | |
Redhat Openshift |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-43058.
IBM Robotic Process Automation 23.0.9, IBM Robotic Process Automation for Cloud Pak 23.0.9, and other related versions are affected by this vulnerability.
The severity of CVE-2023-43058 is critical with a CVSS score of 9.8.
This vulnerability allows for privilege escalation that affects the ownership of projects in IBM Robotic Process Automation.
To fix CVE-2023-43058, apply the relevant patch provided by IBM.