Ibm Business Process Manager Standard vulnerabilities
2 known vulnerabilities affecting ibm/business_process_manager_standard.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2021-38893MEDIUMCVSS 5.4v8.5.5v8.5.7.CF201706+12 more2021-12-21
CVE-2021-38893 [MEDIUM] CWE-79 CVE-2021-38893: IBM Business Process Manager 8.5 and 8.6 and IBM Business Automation Workflow 18.0, 19.0, 20.0 and 2
IBM Business Process Manager 8.5 and 8.6 and IBM Business Automation Workflow 18.0, 19.0, 20.0 and 21.0 are vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-F
cvelistv5nvd
CVE-2020-4446MEDIUMCVSS 4.3v8.5.5v8.5.7.CF201706+17 more2020-05-06
CVE-2020-4446 [MEDIUM] CWE-863 CVE-2020-4446: IBM Business Process Manager 8.0, 8.5, and 8.6 and IBM Business Automation Workflow 18.0 and 19.0 co
IBM Business Process Manager 8.0, 8.5, and 8.6 and IBM Business Automation Workflow 18.0 and 19.0 could allow a remote attacker to bypass security restrictions, caused by the failure to perform insufficient authorization checks. IBM X-Force ID: 181126.
cvelistv5nvd