Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-35279

Опубликовано: 03 нояб. 2022
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

"IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2, 21.0.3, and 22.0.1 could disclose sensitive version information to authenticated users which could be used in further attacks against the system. IBM X-Force ID: 230537."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:business_automation_workflow:*:*:*:*:traditional:*:*:*
Версия от 18.0.0.0 (включая) до 18.0.0.2 (включая)
cpe:2.3:a:ibm:business_automation_workflow:*:*:*:*:traditional:*:*:*
Версия от 19.0.0.0 (включая) до 19.0.0.3 (включая)
cpe:2.3:a:ibm:business_automation_workflow:20.0.0.1:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:20.0.0.1:-:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:20.0.0.2:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:20.0.0.2:-:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.1:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.2:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.2:-:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if002:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if005:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if006:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if007:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if008:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if009:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if010:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:21.0.3:if011:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:22.0.1:*:*:*:traditional:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:22.0.1:-:*:*:containers:*:*:*
cpe:2.3:a:ibm:business_automation_workflow:22.0.1:if001:*:*:containers:*:*:*

EPSS

Процентиль: 31%
0.00115
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-312
CWE-312

Связанные уязвимости

CVSS3: 4.3
github
больше 3 лет назад

"IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2, 21.0.3, and 22.0.1 could disclose sensitive version information to authenticated users which could be used in further attacks against the system. IBM X-Force ID: 230537."

EPSS

Процентиль: 31%
0.00115
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-312
CWE-312