← Back

CVE-2024-49824

nvd nist
Published: Jan 18, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: psirt@us.ibm.com (Secondary)

Description

IBM Robotic Process Automation 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 and IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 could allow an authenticated user to perform unauthorized actions as a privileged user due to improper validation of client-side security enforcement.

Affected (4)

2 products
Robotic Process Automation
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 21.0.0 to 21.0.7.19
From 23.0.0 to 23.0.19
Ibm
From 21.0.0 to 21.0.7.19
From 23.0.0 to 23.0.19

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.