Ibm

Cloud Pak For Business Automation

33 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.37%
  • Veröffentlicht 15.09.2026 17:30:12
  • Zuletzt bearbeitet 16.09.2026 19:24:58

IBM Cloud Pak for Business Automation 26.0.0 through 26.0.0 Interim Fix 001, 25.0.0 through 25.0.0 Interim Fix 005, 24.0.1 through 24.0.1 Interim Fix 008, and 24.0.0 through 24.0.0 Interim Fix 009 is vulnerable to an XPath injection vulnerability, wh...

  • EPSS 0.25%
  • Veröffentlicht 15.09.2026 17:05:23
  • Zuletzt bearbeitet 23.09.2026 20:12:42

IBM Cloud Pak for Business Automation is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to crede...

  • EPSS 0.25%
  • Veröffentlicht 15.09.2026 17:04:27
  • Zuletzt bearbeitet 23.09.2026 20:14:38

IBM Cloud Pak for Business Automation is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to crede...

  • EPSS 0.27%
  • Veröffentlicht 15.09.2026 17:03:34
  • Zuletzt bearbeitet 23.09.2026 20:15:43

IBM Cloud Pak for Business Automation is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.

  • EPSS 0.3%
  • Veröffentlicht 14.09.2026 21:15:24
  • Zuletzt bearbeitet 16.09.2026 19:24:58

IBM Cloud Pak for Business Automation could allow a remote attacker to bypass authorization and invoke restricted endpoints due to improper validation of HTTP headers.

  • EPSS 0.37%
  • Veröffentlicht 14.09.2026 21:13:46
  • Zuletzt bearbeitet 16.09.2026 19:24:58

IBM Cloud Pak for Business Automation could allow an authenticated user to cause a denial of service due to uncontrolled resource consumption.

  • EPSS 0.11%
  • Veröffentlicht 04.09.2026 15:02:25
  • Zuletzt bearbeitet 08.09.2026 14:17:08

CP4BA - IBM Enterprise Records could allow a local attacker to obtain sensitive information due to the use of a broken or risky cryptographic algorithm.

  • EPSS 0.24%
  • Veröffentlicht 05.08.2026 16:16:49
  • Zuletzt bearbeitet 10.08.2026 19:27:19

IBM Cloud Pak For Business Automation 24.0.0, 24.0.1, 25.0.0, and 26.0.0 could allow a remote attacker to obtain sensitive information exposed in manifest files.

  • EPSS 0.22%
  • Veröffentlicht 03.02.2026 22:06:09
  • Zuletzt bearbeitet 25.02.2026 18:52:22

IBM Cloud Pak for Business Automation 25.0.0 through 25.0.0 Interim Fix 002, 24.0.1 through 24.0.1 Interim Fix 005, and 24.0.0 through 24.0.0 Interim Fix 007 could allow an authenticated user to cause a denial of service or corrupt existing data due ...

  • EPSS 0.21%
  • Veröffentlicht 02.02.2026 23:15:59
  • Zuletzt bearbeitet 19.02.2026 13:48:21

IBM Cloud Pak for Business Automation 25.0.0 through 25.0.0 Interim Fix 002, 24.0.1 through 24.0.1 Interim Fix 005, and 24.0.0 through 24.0.0 Interim Fix 007  is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated us...