IBM Business Process Manager and IBM Business Automation Workflow are vulnerable to an information disclosure attack.
Affected product(s) and affected version(s):
| Affected Product(s) | Version(s) |
| IBM Business Automation Workflow | V19.0 V18.0 |
| IBM Business Process Manager | V8.6 V8.5 V8.0 |
For earlier and unsupported versions of the products, IBM recommends upgrading to a fixed, supported version of the product.
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/6205805
The post Security Bulletin: Information disclosure vulnerability affecting IBM Business Automation Workflow and IBM Business Process Manager (BPM) – CVE-2020-4446 appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2WA2BE2
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.