VendorsIBMcloud_pak_for_business_automation21.0.2
Vulnerabilities

IBM Cloud Pak For Business Automation 21.0.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2023-35899
IBM Cloud Pak for Automation CSV injection
Published 2024-03-05 · Analyzed
9.8EPSS 0.008
CVE-2023-35024
IBM Cloud Pak for Business Automation cross-site scripting
Published 2023-10-14 · Modified
7.6EPSS 0.004
CVE-2021-29859
IBM ICP4A - User Management System Component (IBM Cloud Pak for Business Automation V21.0.3 through V21.0.3-IF008, V21.0.2 through V21.0.2-IF009, and V21.0.1 through V21.0.1-IF007) could allow a user with physical access to the system to perform unauthorized actions or obtain sensitive information due to insufficient validation and recvocation another user logouting out. IBM X-Force ID: 206081.
Published 2022-05-02 · Modified
6.8EPSS 0.003
CVE-2023-50959
IBM Cloud Pak for Business Automation information disclosure
Published 2024-03-31 · Modified
6.5EPSS 0.005
CVE-2023-38367
IBM Cloud Pak for Automation authentication bypass
Published 2024-02-29 · Modified
6.5EPSS 0.004
CVE-2024-49348
IBM Cloud Pak for Business Automation incorrect privilege assignment
Published 2025-02-05 · Analyzed
6.5EPSS 0.003
CVE-2024-52365
IBM Cloud Pak for Business Automation cross-site scripting
Published 2025-02-05 · Analyzed
6.4EPSS 0.002
CVE-2023-32339
IBM Business Automation Workflow cross-site scripting
Published 2023-06-27 · Modified
6.1EPSS 0.005
CVE-2023-22860
IBM Cloud Pak for Business Automation cross-site scripting
Published 2023-02-27 · Modified
5.4EPSS 0.004
CVE-2024-52364
IBM Cloud Pak for Business Automation cross-site scripting
Published 2025-02-05 · Analyzed
5.4EPSS 0.002
CVE-2023-23469
IBM Cloud Pak for Business Automation information disclosure
Published 2023-02-01 · Modified
4.0EPSS 0.002