Remote Data Exposure in IBM Robotic Process Automation
CVE-2024-51456

5.9MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
12 January 2025

Badges

đź‘ľ Exploit Existsđź“° News Worthy

Summary

A vulnerability exists in IBM Robotic Process Automation versions 21.0.0 through 21.0.7.19 and 23.0.0 through 23.0.19, where a remote attacker may exploit weaknesses in crypto-analysis to access sensitive data. This risk accentuates the need for vigilant security measures and targeted updates to safeguard valuable information from potential exposure.

Affected Version(s)

Robotic Process Automation 21.0.0 <= 21.0.7.19

Robotic Process Automation 23.0.0 <= 23.0.19

News Articles

IBM Robotic Process Autmation Vulnerability Let Attackers Obtain Sensitive Data

A newly disclosed security vulnerability in IBM Robotic Process Automation (RPA) has raised concerns about potential data breaches.

3 weeks ago

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • đź‘ľ

    Exploit known to exist

  • đź“°

    First article discovered by GBHackers News

  • Vulnerability published

  • Vulnerability Reserved

.