Cross-Site Request Forgery in IBM Business Automation Workflow and Process Manager
CVE-2022-22361
4.3MEDIUM
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 31 May 2022
What is CVE-2022-22361?
IBM Business Automation Workflow and Business Process Manager are susceptible to cross-site request forgery (CSRF), exposing users to the risk of attackers executing unauthorized commands on behalf of legitimate users. A successful exploit could lead to significant security breaches, allowing malicious interactions from trusted accounts without proper authorization.
Affected Version(s)
Business Automation Workflow 18.0.0.0
Business Automation Workflow 18.0.0.1
Business Automation Workflow 19.0.0.1