CVE-2022-41294

IBM Robotic Process Automation 21.0.0, 21.0.1, 21.0.2, 21.0.3, and 21.0.4 is vulnerable to cross origin resource sharing using the bot api. IBM X-Force ID: 236807.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:robotic_process_automation:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

14 Oct 2022, 20:30

Type Values Removed Values Added
First Time Microsoft windows
Microsoft
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

07 Oct 2022, 18:29

Type Values Removed Values Added
First Time Ibm robotic Process Automation
Ibm
CWE CWE-346
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:a:ibm:robotic_process_automation:*:*:*:*:*:*:*:*
References (CONFIRM) https://www.ibm.com/support/pages/node/6825985 - (CONFIRM) https://www.ibm.com/support/pages/node/6825985 - Vendor Advisory
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/236807 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/236807 - VDB Entry, Vendor Advisory

06 Oct 2022, 18:44

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-06 18:16

Updated : 2023-12-10 14:35


NVD link : CVE-2022-41294

Mitre link : CVE-2022-41294

CVE.ORG link : CVE-2022-41294


JSON object : View

Products Affected

ibm

  • robotic_process_automation

microsoft

  • windows
CWE
CWE-346

Origin Validation Error