Vulnerability Database

290,301

Total vulnerabilities in the database

CVE-2023-22860

IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 244100.

  • Published: Feb 27, 2023
  • Updated: Nov 8, 2023
  • CVE: CVE-2023-22860
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.4
  • AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Software From Fixed in
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_007 21.0.1-interim_fix_007.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_004 21.0.1-interim_fix_004.x
ibm / cloud_pak_for_business_automation 21.0.1 21.0.1.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_002 21.0.1-interim_fix_002.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_003 21.0.1-interim_fix_003.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_006 21.0.1-interim_fix_006.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_005 21.0.1-interim_fix_005.x
ibm / cloud_pak_for_business_automation 21.0.1-interim_fix_001 21.0.1-interim_fix_001.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_009 21.0.2-interim_fix_009.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_007 21.0.2-interim_fix_007.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_004 21.0.2-interim_fix_004.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_008 21.0.2-interim_fix_008.x
ibm / cloud_pak_for_business_automation 21.0.2 21.0.2.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_002 21.0.2-interim_fix_002.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_003 21.0.2-interim_fix_003.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_006 21.0.2-interim_fix_006.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_005 21.0.2-interim_fix_005.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_001 21.0.2-interim_fix_001.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_003 21.0.3-interim_fix_003.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_006 21.0.3-interim_fix_006.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_005 21.0.3-interim_fix_005.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_001 21.0.3-interim_fix_001.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_007 21.0.3-interim_fix_007.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_004 21.0.3-interim_fix_004.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_008 21.0.3-interim_fix_008.x
ibm / cloud_pak_for_business_automation 21.0.3 21.0.3.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_002 21.0.3-interim_fix_002.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_0012 21.0.2-interim_fix_0012.x
ibm / cloud_pak_for_business_automation 22.0.2 22.0.2.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_010 21.0.2-interim_fix_010.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_011 21.0.2-interim_fix_011.x
ibm / cloud_pak_for_business_automation 21.0.2-interim_fix_012 21.0.2-interim_fix_012.x
ibm / cloud_pak_for_business_automation 19.0.1 19.0.1.x
ibm / cloud_pak_for_business_automation 19.0.3 19.0.3.x
ibm / cloud_pak_for_business_automation 18.0.0 18.0.0.x
ibm / cloud_pak_for_business_automation 18.0.2 18.0.2.x
ibm / cloud_pak_for_business_automation 20.0.1 20.0.1.x
ibm / cloud_pak_for_business_automation 20.0.3 20.0.3.x
ibm / cloud_pak_for_business_automation 22.0.2-interim_fix_001 22.0.2-interim_fix_001.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_009 21.0.3-interim_fix_009.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_010 21.0.3-interim_fix_010.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_011 21.0.3-interim_fix_011.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_012 21.0.3-interim_fix_012.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_013 21.0.3-interim_fix_013.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_014 21.0.3-interim_fix_014.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_015 21.0.3-interim_fix_015.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_016 21.0.3-interim_fix_016.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_017 21.0.3-interim_fix_017.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_006 22.0.1-interim_fix_006.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_005 22.0.1-interim_fix_005.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_004 22.0.1-interim_fix_004.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_003 22.0.1-interim_fix_003.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_002 22.0.1-interim_fix_002.x
ibm / cloud_pak_for_business_automation 22.0.1-interim_fix_001 22.0.1-interim_fix_001.x
ibm / cloud_pak_for_business_automation 22.0.1 22.0.1.x