← Back

CVE-2023-50947

nvd nist
Published: Feb 4, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

IBM Business Automation Workflow 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 275665.

Affected (68)

2 products
Business Automation Workflow
Cloud Pak For Business Automation
Configuration A
68 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 19.0.0.1 to 19.0.0.3
From 21.0.1 to 21.0.3.1
Version 20.0.0.1
Version 20.0.0.1
Version 20.0.0.2
Version 20.0.0.2
Version 21.0.2
Version 21.0.3
Version 21.0.3 if002
Version 21.0.3 if005
Version 21.0.3 if006
Version 21.0.3 if007
Version 21.0.3 if008
Version 21.0.3 if009
Version 21.0.3 if010
Version 21.0.3 if011
Version 21.0.3 if012
Version 21.0.3 if013
Version 21.0.3 if014
Version 21.0.3 if015
Version 21.0.3 if016
Version 21.0.3 if017
Version 21.0.3 if028
Version 22.0.1
Version 22.0.1
Version 22.0.2
Version 22.0.2
Version 22.0.2
Version 23.0.1
Version 23.0.1
Version 23.0.1
Version 23.0.2
Ibm
From 18.0.0 to 18.0.2
From 19.0.1 to 19.0.3
From 20.0.1 to 20.0.3
Version 21.0.1
Version 21.0.3
Version 21.0.3 interim_fix_001
Version 21.0.3 interim_fix_002
Version 21.0.3 interim_fix_003
Version 21.0.3 interim_fix_004
Version 21.0.3 interim_fix_005
Version 21.0.3 interim_fix_006
Version 21.0.3 interim_fix_007
Version 21.0.3 interim_fix_008
Version 21.0.3 interim_fix_009
Version 21.0.3 interim_fix_010
Version 21.0.3 interim_fix_011
Version 21.0.3 interim_fix_012
Version 21.0.3 interim_fix_013
Version 21.0.3 interim_fix_014
Version 21.0.3 interim_fix_015
Version 21.0.3 interim_fix_016
Version 21.0.3 interim_fix_017
Version 21.0.3 interim_fix_018
Version 21.0.3 interim_fix_019
Version 21.0.3 interim_fix_020
Version 21.0.3 interim_fix_021
Version 21.0.3 interim_fix_022
Version 21.0.3 interim_fix_023
Version 21.0.3 interim_fix_024
Version 21.0.3 interim_fix_025
Version 21.0.3 interim_fix_026
Version 21.0.3 interim_fix_028
Version 22.0.1
Version 22.0.2
Version 23.0.1
Version 23.0.2

References (6)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.