Lucene search

K
ibmIBMFC3BE558744151D988F034244C78BE714CE0DFB1CD525E6E99302DDBA4624ED0
HistoryJun 28, 2019 - 11:50 a.m.

Security Bulletin: IBM Robotic Process Automation Credential Vault might leak secrets on the Client (CVE-2019-4295)

2019-06-2811:50:01
www.ibm.com
6

EPSS

0.001

Percentile

23.7%

Summary

IBM Robotic Process Automation Credential Vault might leak secrets on the Client

Vulnerability Details

CVEID: CVE-2019-4295 DESCRIPTION: IBM Robotic Process Automation with Automation Anywhere could allow an attacker with specialized access to obtain highly sensitive from the credential vault.
CVSS Base Score: 4.9
CVSS Temporal Score: See <https://exchange.xforce.ibmcloud.com/vulnerabilities/160758&gt; for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N)

Affected Products and Versions

Affected IBM Robotic Process Automation with Automation Anywhere Affected Versions
IBM Robotic Process Automation with Automation Anywhere 11.0

Remediation/Fixes

Product VRMF APAR Remediation / First Fix
IBM Robotic Process Automation with Automation Anywhere 11.0.0.4 JR60985 IBM Robotic Process Automation with Automation Anywhere v11.0.0.5

Workarounds and Mitigations

None

EPSS

0.001

Percentile

23.7%

Related for FC3BE558744151D988F034244C78BE714CE0DFB1CD525E6E99302DDBA4624ED0