cbcvebase.
CVE-2023-25680
published 2023-03-15

CVE-2023-25680: IBM Robotic Process Automation 21.0.1 through 21.0.5 is vulnerable to insufficiently protecting credentials. Queue Provider credentials are not obfuscated…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
IBM Robotic Process Automation 21.0.1 through 21.0.5 is vulnerable to insufficiently protecting credentials. Queue Provider credentials are not obfuscated while editing queue provider details. IBM X-Force ID: 247032.

Affected

4 ranges
VendorProductVersion rangeFixed in
ibmrobotic_process_automation< 21.0.621.0.6
ibmrobotic_process_automation>= 21.0.1 < 21.0.521.0.5
ibmrobotic_process_automation_as_a_service< 21.0.621.0.6
ibmrobotic_process_automation_for_cloud_pak>= 21.0.1 < 21.0.621.0.6