← Back

CVE-2022-42435

nvd nist
Published: Jan 4, 2023Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

IBM Business Automation Workflow 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, and 22.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 238054.

Affected (52)

1 product
Business Automation Workflow
Configuration A
52 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 18.0.0
Version 18.0.1
Version 18.0.2
Version 19.0.1
Version 19.0.2
Version 19.0.3
Version 20.0.1
Version 20.0.2
Version 20.0.3
Version 21.0.1
Version 21.0.1 if001
Version 21.0.1 if002
Version 21.0.1 if003
Version 21.0.1 if004
Version 21.0.1 if005
Version 21.0.1 if006
Version 21.0.1 if007
Version 21.0.2
Version 21.0.2 if001
Version 21.0.2 if002
Version 21.0.2 if003
Version 21.0.2 if004
Version 21.0.2 if005
Version 21.0.2 if006
Version 21.0.2 if007
Version 21.0.2 if008
Version 21.0.2 if009
Version 21.0.2 if010
Version 21.0.2 if011
Version 21.0.2 if012
Version 21.0.3
Version 21.0.3 if001
Version 21.0.3 if002
Version 21.0.3 if003
Version 21.0.3 if004
Version 21.0.3 if005
Version 21.0.3 if006
Version 21.0.3 if007
Version 21.0.3 if008
Version 21.0.3 if009
Version 21.0.3 if010
Version 21.0.3 if011
Version 21.0.3 if012
Version 21.0.3 if013
Version 21.0.3 if014
Version 21.0.3 if015
Version 22.0.1
Version 22.0.1 if001
Version 22.0.1 if002
Version 22.0.1 if003
Version 22.0.1 if004
Version 22.0.1 if005

References (4)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.