Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-50947


IBM Business Automation Workflow 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 275665.


Published

2024-02-04T01:15:25.040

Last Modified

2024-11-21T08:37:35.167

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm business_automation_workflow ≤ 19.0.0.3 Yes
Application ibm business_automation_workflow ≤ 21.0.3.1 Yes
Application ibm business_automation_workflow 20.0.0.1 Yes
Application ibm business_automation_workflow 20.0.0.1 Yes
Application ibm business_automation_workflow 20.0.0.2 Yes
Application ibm business_automation_workflow 20.0.0.2 Yes
Application ibm business_automation_workflow 21.0.2 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 21.0.3 Yes
Application ibm business_automation_workflow 22.0.1 Yes
Application ibm business_automation_workflow 22.0.1 Yes
Application ibm business_automation_workflow 22.0.2 Yes
Application ibm business_automation_workflow 22.0.2 Yes
Application ibm business_automation_workflow 22.0.2 Yes
Application ibm business_automation_workflow 23.0.1 Yes
Application ibm business_automation_workflow 23.0.1 Yes
Application ibm business_automation_workflow 23.0.1 Yes
Application ibm business_automation_workflow 23.0.2 Yes
Application ibm cloud_pak_for_business_automation ≤ 18.0.2 Yes
Application ibm cloud_pak_for_business_automation ≤ 19.0.3 Yes
Application ibm cloud_pak_for_business_automation ≤ 20.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.1 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 21.0.3 Yes
Application ibm cloud_pak_for_business_automation 22.0.1 Yes
Application ibm cloud_pak_for_business_automation 22.0.2 Yes
Application ibm cloud_pak_for_business_automation 23.0.1 Yes
Application ibm cloud_pak_for_business_automation 23.0.2 Yes

References