Information Disclosure Vulnerability in IBM Robotic Process Automation
CVE-2019-4296

4MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
1 July 2019

Summary

A vulnerability in IBM Robotic Process Automation with Automation Anywhere 11 allows local users to access sensitive email contents stored in the client debug log file. This exposure could lead to unauthorized access to private information, raising concerns about data security within automated processes. Users should take immediate action to secure their environment.

Affected Version(s)

Robotic Process Automation with Automation Anywhere 11

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.