Vulnerability Database

290,278

Total vulnerabilities in the database

CVE-2023-50947

IBM Business Automation Workflow 22.0.2, 23.0.1, and 23.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 275665.

  • Published: Feb 4, 2024
  • Updated: Feb 11, 2024
  • CVE: CVE-2023-50947
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.4
  • AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Software From Fixed in
ibm / business_automation_workflow 20.0.0.1 20.0.0.1.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_003 21.0.3-interim_fix_003.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_006 21.0.3-interim_fix_006.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_005 21.0.3-interim_fix_005.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_001 21.0.3-interim_fix_001.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_007 21.0.3-interim_fix_007.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_004 21.0.3-interim_fix_004.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_008 21.0.3-interim_fix_008.x
ibm / cloud_pak_for_business_automation 21.0.3 21.0.3.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_002 21.0.3-interim_fix_002.x
ibm / business_automation_workflow 21.0.3-if011 21.0.3-if011.x
ibm / business_automation_workflow 21.0.3-if010 21.0.3-if010.x
ibm / business_automation_workflow 21.0.3-if009 21.0.3-if009.x
ibm / business_automation_workflow 21.0.3-if008 21.0.3-if008.x
ibm / business_automation_workflow 21.0.3-if007 21.0.3-if007.x
ibm / business_automation_workflow 21.0.3-if006 21.0.3-if006.x
ibm / business_automation_workflow 21.0.3-if005 21.0.3-if005.x
ibm / business_automation_workflow 21.0.3-if002 21.0.3-if002.x
ibm / business_automation_workflow 20.0.0.2 20.0.0.2.x
ibm / business_automation_workflow 22.0.1 22.0.1.x
ibm / business_automation_workflow 19.0.0.1 19.0.0.3.x
ibm / business_automation_workflow 21.0.1 21.0.3.1.x
ibm / business_automation_workflow 21.0.3-if012 21.0.3-if012.x
ibm / business_automation_workflow 21.0.3-if013 21.0.3-if013.x
ibm / business_automation_workflow 21.0.3-if014 21.0.3-if014.x
ibm / business_automation_workflow 22.0.2 22.0.2.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_009 21.0.3-interim_fix_009.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_010 21.0.3-interim_fix_010.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_011 21.0.3-interim_fix_011.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_012 21.0.3-interim_fix_012.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_013 21.0.3-interim_fix_013.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_014 21.0.3-interim_fix_014.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_015 21.0.3-interim_fix_015.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_016 21.0.3-interim_fix_016.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_017 21.0.3-interim_fix_017.x
ibm / business_automation_workflow 21.0.3-if015 21.0.3-if015.x
ibm / business_automation_workflow 21.0.3-if016 21.0.3-if016.x
ibm / business_automation_workflow 21.0.3-if017 21.0.3-if017.x
ibm / business_automation_workflow 21.0.3 21.0.3.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_018 21.0.3-interim_fix_018.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_019 21.0.3-interim_fix_019.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_020 21.0.3-interim_fix_020.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_021 21.0.3-interim_fix_021.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_022 21.0.3-interim_fix_022.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_023 21.0.3-interim_fix_023.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_024 21.0.3-interim_fix_024.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_025 21.0.3-interim_fix_025.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_026 21.0.3-interim_fix_026.x
ibm / business_automation_workflow 23.0.2 23.0.2.x
ibm / business_automation_workflow 23.0.1 23.0.1.x
ibm / business_automation_workflow 21.0.3-if028 21.0.3-if028.x
ibm / business_automation_workflow 21.0.2 21.0.2.x
ibm / cloud_pak_for_business_automation 23.0.2 23.0.2.x
ibm / cloud_pak_for_business_automation 22.0.2 22.0.2.x
ibm / cloud_pak_for_business_automation 22.0.1 22.0.1.x
ibm / cloud_pak_for_business_automation 23.0.1 23.0.1.x
ibm / cloud_pak_for_business_automation 21.0.3-interim_fix_028 21.0.3-interim_fix_028.x
ibm / cloud_pak_for_business_automation 21.0.1 21.0.1.x
ibm / cloud_pak_for_business_automation 20.0.1 20.0.3.x
ibm / cloud_pak_for_business_automation 19.0.1 19.0.3.x
ibm / cloud_pak_for_business_automation 18.0.0 18.0.2.x