PublicCVE

CVE-2022-34338

MEDIUM5.8JSON exportCreate alert

Description

IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could disclose sensitive information due to improper privilege management for storage provider types. IBM X-Force ID: 229962.

CVSS breakdown

CVSS 3.0
Scope
Changed
Confidentiality
High
Availability
None
Attack Complexity
High
Integrity
None
User Interaction
None
Attack Vector
Network
Privileges Required
High
E
Unchanged
RL
O
RC
Changed

Affected products