Ibm

Cloud Pak For Business Automation

26 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.25%
  • Veröffentlicht 03.05.2025 16:15:19
  • Zuletzt bearbeitet 14.08.2025 01:51:25

IBM Cloud Pak for Business Automation 24.0.0 through 24.0.0 IF004 and 24.0.1 through 24.0.1 IF001 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus alter...

  • EPSS 0.22%
  • Veröffentlicht 05.02.2025 12:15:28
  • Zuletzt bearbeitet 12.08.2025 16:30:44

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed a...

  • EPSS 0.22%
  • Veröffentlicht 05.02.2025 12:15:28
  • Zuletzt bearbeitet 12.08.2025 16:28:43

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to ...

  • EPSS 0.25%
  • Veröffentlicht 05.02.2025 12:15:28
  • Zuletzt bearbeitet 12.08.2025 16:36:42

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 allows restricting access to organizational data to valid contexts. The fact that tasks of ty...

  • EPSS 0.26%
  • Veröffentlicht 08.07.2024 03:15:02
  • Zuletzt bearbeitet 21.11.2024 09:24:00

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows a privileged use...

  • EPSS 0.3%
  • Veröffentlicht 08.07.2024 03:15:02
  • Zuletzt bearbeitet 21.11.2024 09:14:06

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, 22.0.2, 23.0.1, and 23.0.2 vulnerable to server-side request forgery (SSRF). This may allow an authenticated...

  • EPSS 0.55%
  • Veröffentlicht 31.03.2024 12:15:50
  • Zuletzt bearbeitet 21.11.2024 08:37:36

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2,19.0.1, 19.0.2, 19.0.3,20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1,2 2.0.2, 23.0.1, and 23.0.2 may allow end users to query more documents than expected from a connected Enterpri...

  • EPSS 0.64%
  • Veröffentlicht 21.03.2024 02:47:58
  • Zuletzt bearbeitet 05.03.2025 18:24:35

IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the syst...

  • EPSS 0.4%
  • Veröffentlicht 29.02.2024 02:15:09
  • Zuletzt bearbeitet 27.03.2025 15:15:46

IBM Cloud Pak Foundational Services Identity Provider (idP) API (IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2) allows CRUD Operations with an invalid t...

  • EPSS 0.41%
  • Veröffentlicht 04.02.2024 01:15:25
  • Zuletzt bearbeitet 21.11.2024 08:37:35

IBM Business Automation Workflow 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to creden...