CVE-2021-39046
18.03.2022, 16:15
IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 stores user credentials in plain clear text which can be read by a lprivileged user. IBM X-Force ID: 214346.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | business_automation_workflow | 18.0.0.0 |
ibm | business_automation_workflow | 18.0.0.1 |
ibm | business_automation_workflow | 18.0.0.2 |
ibm | business_automation_workflow | 19.0.0.1 |
ibm | business_automation_workflow | 19.0.0.2 |
ibm | business_automation_workflow | 19.0.0.3 |
ibm | business_automation_workflow | 20.0.0.1 |
ibm | business_automation_workflow | 20.0.0.2 |
ibm | business_automation_workflow | 21.0.2 |
ibm | business_process_manager | 8.5 |
ibm | business_process_manager | 8.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration