PT-2022-6281 · Ibm · Ibm Robotic Process Automation Clients

Published

2022-09-28

·

Updated

2022-10-03

·

CVE-2022-39168

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Robotic Process Automation Clients (affected versions not specified)
Description The issue is related to insufficient protection of registration data, which can lead to the exposure of protected information. A remote attacker may exploit this to disclose sensitive information. The vulnerability is also associated with proxy credentials being exposed in upgrade logs.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

BDU:2023-00733
CVE-2022-39168

Affected Products

Ibm Robotic Process Automation Clients