LOW · 3.1

CVE-2022-43573

IBM Robotic Process Automation 20.12 through 21.0.6 is vulnerable to exposure of the name and email for the creator/modifier of platform level objects. IBM X-Force ID: 238678.

Vulnerability Description

IBM Robotic Process Automation 20.12 through 21.0.6 is vulnerable to exposure of the name and email for the creator/modifier of platform level objects. IBM X-Force ID: 238678.

CVSS Score

3.1

LOW

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IbmRobotic Process Automation< 21.0.7
IbmRobotic Process Automation As A Service< 21.0.7
IbmRobotic Process Automation For Cloud Pak< 21.0.7
RedhatOpenshift-
MicrosoftWindows-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-43573?

CVE-2022-43573 is a vulnerability with a CVSS score of 3.1 (LOW). IBM Robotic Process Automation 20.12 through 21.0.6 is vulnerable to exposure of the name and email for the creator/modifier of platform level objects. IBM X-Force ID: 238678.

How severe is CVE-2022-43573?

CVE-2022-43573 has been rated LOW with a CVSS base score of 3.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-43573?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Robotic Process Automation, Ibm Robotic Process Automation As A Service, Ibm Robotic Process Automation For Cloud Pak, Redhat Openshift, Microsoft Windows.