Vulnerabilities > IBM > Business Automation Workflow > 20.0.0.0

DATE CVE VULNERABILITY TITLE RISK
2020-09-25 CVE-2020-4531 Unchecked Return Value vulnerability in IBM products
IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-252
5.3
2020-09-15 CVE-2020-4530 Cross-site Scripting vulnerability in IBM products
IBM Business Automation Workflow C.D.0 and IBM Business Process Manager 8.0, 8.5, and 8.6 are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2020-06-29 CVE-2020-4557 Cross-site Scripting vulnerability in IBM products
IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.5 and 8.6 are vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4