PT-2022-24542 · Ibm · Ibm Robotic Process Automation

Published

2022-11-03

·

Updated

2024-09-21

·

CVE-2022-38710

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Robotic Process Automation versions 21.0.1 through 21.0.2
Description The issue could disclose sensitive version information to an unauthorized control sphere, which could aid in further attacks against the system.
Recommendations For versions 21.0.1 and 21.0.2, consider restricting access to sensitive version information to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2022-38710

Affected Products

Ibm Robotic Process Automation