IBM Business Automation Workflow
cpe:2.3:a:ibm:business_automation_workflow:*:*:*:*:*:*:*
- >= 24.0.1, <= 24.0.1-IF001
- >= 24.0.1, <= 24.0.1
An information leakage vulnerability has been identified in IBM Business Automation Workflow versions 24.0.0 and 24.0.1 prior to 24.0.1 IF001. The issue arises in the Workflow Center, where sensitive information may be exposed due to inadequate authorization validation.
The vulnerability could lead to unauthorized access to sensitive information.
Users are advised to upgrade to version 24.0.1-IF002 for the container version or to apply the fix available through APAR DT424716 for the traditional version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.