CVE-2024-51456CWE-780
IBM Robotic Process Automation information disclosure
Medium · published January 12, 2025
What it is
IBM Robotic Process Automation 21.0.0 through 21.0.7.19 and 23.0.0 through 23.0.19 could allow a remote attacker to obtain sensitive data that may be exposed through certain crypto-analytic attacks.
The record
Technical detail
- CVSS v3.1
- 5.9 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00284 · 20.6th percentile
- Weakness
- CWE-780 · Use of RSA Algorithm without OAEP
- Published
- 2025-01-12T13:26Z
EPSS history
Timeline