IBM Business Automation Workflow是美国国际商业机器(IBM)公司的一套工作流程自动化解决方案。该产品主要用于工作流程管理、合规性管理,并具有工作流程可见性和可扩展等特点。 IBM Business Automation Workflow存在安全漏洞,该漏洞源于存在跨站脚本(XSS)漏洞。攻击者可利用该漏洞在Web UI中嵌入任意JavaScript代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Business Automation Workflow | 19.0.0.1 ~ 19.0.0.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-30993 | 6.8 MEDIUM | IBM Cloud Pak for Security information disclosure |
| CVE-2022-34352 | 6.5 MEDIUM | IBM QRadar information disclosure |
| CVE-2023-26276 | 5.9 MEDIUM | IBM QRadar information disclosure |
| CVE-2023-23468 | 5.1 MEDIUM | IBM Robotic Process Automation for Cloud Pak access control |
| CVE-2023-26274 | 4.6 MEDIUM | IBM QRadar cross-site scripting |
| CVE-2023-26273 | 4.3 MEDIUM | IBM QRadar security bypass |
| CVE-2023-22593 | 4.0 MEDIUM | IBM Robotic Process Automation for Cloud Pak security configuration |
No comments yet