Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-35279


"IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2, 21.0.3, and 22.0.1 could disclose sensitive version information to authenticated users which could be used in further attacks against the system. IBM X-Force ID: 230537."


Published

2022-11-03T20:15:28.853

Last Modified

2025-05-02T21:15:17.870

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-312
  • Type: Secondary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm business_automation_workflow ≤ 18.0.0.2 Yes
Application ibm business_automation_workflow ≤ 19.0.0.3 Yes
Application ibm business_automation_workflow 20.0.0.1 Yes
Application ibm business_automation_workflow 20.0.0.1 Yes
Application ibm business_automation_workflow 20.0.0.2 Yes
Application ibm business_automation_workflow 20.0.0.2 Yes
Application ibm business_automation_workflow 21.0.1 Yes
Application ibm business_automation_workflow 21.0.2 Yes
Application ibm business_automation_workflow 21.0.2 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 22.0.1 Yes
Application ibm business_automation_workflow 22.0.1 Yes
Application ibm business_automation_workflow 22.0.1 Yes

References