First published: Thu Jul 04 2024(Updated: )
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 294293.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Business Automation | >=18.0.0<=18.0.2 | |
IBM Cloud Pak for Business Automation | >=19.0.1<=19.0.3 | |
IBM Cloud Pak for Business Automation | >=20.0.1<=20.0.3 | |
IBM Cloud Pak for Business Automation | =21.0.1 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_005 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_006 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_007 | |
IBM Cloud Pak for Business Automation | =21.0.1-interim_fix_008 | |
IBM Cloud Pak for Business Automation | =21.0.3 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_005 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_006 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_007 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_008 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_009 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_010 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_011 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_012 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_013 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_014 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_015 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_016 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_017 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_018 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_019 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_020 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_021 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_022 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_023 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_024 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_025 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_026 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_028 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_029 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_030 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_031 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_032 | |
IBM Cloud Pak for Business Automation | =21.0.3-interim_fix_033 | |
IBM Cloud Pak for Business Automation | =22.0.1 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_005 | |
IBM Cloud Pak for Business Automation | =22.0.1-interim_fix_006 | |
IBM Cloud Pak for Business Automation | =22.0.2 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_005 | |
IBM Cloud Pak for Business Automation | =22.0.2-interim_fix_006 | |
IBM Cloud Pak for Business Automation | =23.0.1 | |
IBM Cloud Pak for Business Automation | =23.0.1-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =23.0.1-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =23.0.1-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =23.0.1-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =23.0.2 | |
IBM Cloud Pak for Business Automation | =23.0.2-interim_fix_001 | |
IBM Cloud Pak for Business Automation | =23.0.2-interim_fix_002 | |
IBM Cloud Pak for Business Automation | =23.0.2-interim_fix_003 | |
IBM Cloud Pak for Business Automation | =23.0.2-interim_fix_004 | |
IBM Cloud Pak for Business Automation | =23.0.2-interim_fix_005 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.