CVE-2022-30607
- EPSS 0.25%
- Veröffentlicht 17.06.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:01
IBM Robotic Process Automation 20.10.0, 20.12.5, 21.0.0, 21.0.1, and 21.0.2 contains a vulnerability that could allow a user to obtain sensitive information due to information properly masked in the control center UI. IBM X-Force ID: 227294.
CVE-2022-22413
- EPSS 0.26%
- Veröffentlicht 12.05.2022 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:46:46
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end databas...
CVE-2022-22319
- EPSS 0.31%
- Veröffentlicht 09.05.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:46:38
IBM Robotic Process Automation 21.0.1 could allow a register user on the system to physically delete a queue that could cause disruption for any scripts dependent on the queue. IBM X-Force ID: 218366.
CVE-2022-22415
- EPSS 0.16%
- Veröffentlicht 05.05.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:46:46
A vulnerability exists where an IBM Robotic Process Automation 21.0.1 regular user is able to obtain view-only access to some admin pages in the Control Center IBM X-Force ID: 223029.
CVE-2022-22434
- EPSS 0.05%
- Veröffentlicht 05.05.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:46:47
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a user with physical access to create an API request modified to create additional objects. IBM X-Force ID: 224159.
CVE-2022-22433
- EPSS 0.25%
- Veröffentlicht 05.05.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:46:47
IBM Robotic Process Automation 21.0.1 and 21.0.2 is vulnerable to External Service Interaction attack, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to induce the application to perform serve...