CVE-2022-22506Sensitive Information Exposure in IBM Robotic Process Automation

Severity
4.6MEDIUMNVD
EPSS
0.0%
top 89.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 12

Description

IBM Robotic Process Automation 21.0.2 contains a vulnerability that could allow user ids may be exposed across tenants. IBM X-Force ID: 227293.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 0.9 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
IBM Robotic Process Automation information disclosure2024-02-12
GHSA
GHSA-qf63-rfv8-f92j: IBM Robotic Process Automation 212024-02-12
CVE-2022-22506 — Sensitive Information Exposure in IBM | cvebase