CVE-2022-38710

IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version to an unauthorized control sphere information that could aid in further attacks against the system. IBM X-Force ID: 234292.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:robotic_process_automation:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:robotic_process_automation_as_a_service:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:robotic_process_automation_for_cloud_pak:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-11-03 20:15

Updated : 2024-11-21 07:16


NVD link : CVE-2022-38710

Mitre link : CVE-2022-38710

CVE.ORG link : CVE-2022-38710


JSON object : View

Products Affected

ibm

  • robotic_process_automation_for_cloud_pak
  • robotic_process_automation_as_a_service
  • robotic_process_automation

microsoft

  • windows
CWE
CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere

CWE-312

Cleartext Storage of Sensitive Information