VendorsIBMrobotic_process_automation21.0.1
Vulnerabilities

IBM Robotic Process Automation 21.0.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2022-22413
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 223022.
Published 2022-05-12 · Modified
9.8EPSS 0.013
CVE-2022-22415
A vulnerability exists where an IBM Robotic Process Automation 21.0.1 regular user is able to obtain view-only access to some admin pages in the Control Center IBM X-Force ID: 223029.
Published 2022-05-05 · Modified
6.5EPSS 0.008
CVE-2022-30607
IBM Robotic Process Automation 20.10.0, 20.12.5, 21.0.0, 21.0.1, and 21.0.2 contains a vulnerability that could allow a user to obtain sensitive information due to information properly masked in the control center UI. IBM X-Force ID: 227294.
Published 2022-06-17 · Modified
6.5EPSS 0.007
CVE-2022-22319
IBM Robotic Process Automation 21.0.1 could allow a register user on the system to physically delete a queue that could cause disruption for any scripts dependent on the queue. IBM X-Force ID: 218366.
Published 2022-05-09 · Modified
5.5EPSS 0.010
CVE-2022-22434
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a user with physical access to create an API request modified to create additional objects. IBM X-Force ID: 224159.
Published 2022-05-05 · Modified
4.6EPSS 0.002
CVE-2022-33954
IBM Robotic Process Automation information disclosure
Published 2024-12-19 · Analyzed
4.6EPSS 0.002