PT-2022-22138 · Ibm · Ibm Robotic Process Automation

Joberto Diniz

·

Published

2022-07-31

·

Updated

2022-08-05

·

CVE-2022-34338

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Robotic Process Automation versions 21.0.0 through 21.0.2
Description The issue is related to improper privilege management for storage provider types, which could lead to the disclosure of sensitive information.
Recommendations For versions 21.0.0 through 21.0.2, update to a version that properly manages privileges for storage provider types to prevent sensitive information disclosure. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2022-34338

Affected Products

Ibm Robotic Process Automation