CVE-2022-38710

IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version to an unauthorized control sphere information that could aid in further attacks against the system. IBM X-Force ID: 234292.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
OR cpe:2.3:a:ibm:robotic_process_automation:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:robotic_process_automation_as_a_service:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:robotic_process_automation_for_cloud_pak:*:*:*:*:*:*:*:*

History

21 Sep 2024, 10:15

Type Values Removed Values Added
Summary (en) IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 234292. (en) IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version to an unauthorized control sphere information that could aid in further attacks against the system. IBM X-Force ID: 234292.
CWE CWE-319 CWE-497

18 Apr 2024, 04:15

Type Values Removed Values Added
CWE CWE-200 CWE-319
Summary (en) "IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 234292." (en) IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 234292.

12 Feb 2024, 19:15

Type Values Removed Values Added
Summary (en) "IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 234292." (en) "IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 234292."
References
  • () https://exchange.xforce.ibmcloud.com/vulnerabilities/234292 -
CWE CWE-200

04 Nov 2022, 15:13

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-03 20:15

Updated : 2024-09-21 10:15


NVD link : CVE-2022-38710

Mitre link : CVE-2022-38710

CVE.ORG link : CVE-2022-38710


JSON object : View

Products Affected

microsoft

  • windows

ibm

  • robotic_process_automation
  • robotic_process_automation_as_a_service
  • robotic_process_automation_for_cloud_pak
CWE
CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere

CWE-312

Cleartext Storage of Sensitive Information