CVE-2021-29751: Medium severity IBM Business Automation Workflow vulnerability
IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.5 and 8.6 could allow an authenticated user to obtain sensitive information about another user under nondefault configurations. IBM X-Force ID: 201779.
Other sources
IBM Business Automation Workflow could allow an authenticated user to obtain sensitive information about another user under nondefault configurations.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Business Automation Workflow vulnerability?
The vulnerability ID for this IBM Business Automation Workflow vulnerability is CVE-2021-29751.
What is the severity level of CVE-2021-29751?
The severity level of CVE-2021-29751 is medium, with a severity value of 4.3.
Which versions of IBM Business Automation Workflow are affected by this vulnerability?
This vulnerability affects IBM Business Automation Workflow versions 18.0, 19.0, and 20.0.
Which versions of IBM Business Process Manager are affected by this vulnerability?
This vulnerability affects IBM Business Process Manager versions 8.5 and 8.6.
How can an authenticated user exploit this vulnerability to obtain sensitive information about another user?
An authenticated user can exploit this vulnerability under nondefault configurations to obtain sensitive information about another user.