IBM Robotic Process Automation 21.0.1 through 21.0.7 and...
Low severity
Unreviewed
Published
Mar 15, 2023
to the GitHub Advisory Database
•
Updated Mar 28, 2023
Description
Published by the National Vulnerability Database
Mar 15, 2023
Published to the GitHub Advisory Database
Mar 15, 2023
Last updated
Mar 28, 2023
IBM Robotic Process Automation 21.0.1 through 21.0.7 and 23.0.0 through 23.0.1 could allow a user with physical access to the system due to session tokens for not being invalidated after a password reset. IBM X-Force ID: 243710.
References