cbcvebase.
CVE-2024-38321
published 2024-08-03

CVE-2024-38321: IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2, and 24.0.0 stores potentially sensitive information in log files under certain situations that could…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2, and 24.0.0 stores potentially sensitive information in log files under certain situations that could be read by an authenticated user. IBM X-Force ID: 284868.

Affected

14 ranges
VendorProductVersion rangeFixed in
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow19.0.0.1 – 19.0.0.3
ibmbusiness_automation_workflow20.0.0.1 – 20.0.0.2
ibmbusiness_automation_workflow21.0.1 – 21.0.3.0
ibmbusiness_automation_workflow22.0.1 – 22.0.2
ibmbusiness_automation_workflow23.0.1 – 23.0.2