CVE-2019-4045
08.04.2019, 15:29
IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 provide embedded document management features. Because of a missing restriction in an API, a client might spoof the last modified by value of a document. IBM X-Force ID: 156241.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | business_automation_workflow | 18.0.0.0 ≤ 𝑥 ≤ 18.0.0.2 |
ibm | business_process_manager | 8.5.0.0 ≤ 𝑥 ≤ 8.5.0.2 |
ibm | business_process_manager | 8.5.5.0 |
ibm | business_process_manager | 8.5.6.0 |
ibm | business_process_manager | 8.5.6.0:cf1 |
ibm | business_process_manager | 8.5.6.0:cf2 |
ibm | business_process_manager | 8.5.7.0 |
ibm | business_process_manager | 8.5.7.0:cf201706 |
ibm | business_process_manager | 8.6.0.0 |
ibm | business_process_manager | 8.6.0.0:cf201712 |
ibm | business_process_manager | 8.6.0.0:cf201803 |
𝑥
= Vulnerable software versions