PT-2023-14373 · Ibm · Ibm Robotic Process Automation For Cloud Pak
CVE-2022-43844
·
Publicado
2023-01-05
·
Atualizado
2025-04-10
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Robotic Process Automation for Cloud Pak versions 20.12 through 21.0.3
Description
The issue is related to broken access control, where a user is not correctly redirected to the platform log out screen when logging out of IBM RPA for Cloud Pak.
Recommendations
For versions 20.12 through 21.0.3, update to a version that correctly redirects users to the platform log out screen when logging out of IBM RPA for Cloud Pak.
As a temporary workaround, consider implementing additional access controls to ensure users are properly logged out of the system.
Correção
Insufficient Session Expiration
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Robotic Process Automation For Cloud Pak