Rewterz
Rewterz Threat Advisory – ICS: VISAM VBASE Editor Vulnerabilities
November 5, 2021
Rewterz
Rewterz Threat Advisory – CVE-2021-43267 – Linux Kernel TIPC module
November 8, 2021

Rewterz Threat Advisory – CVE-2021-29753 – IBM Business Automation Workflow

Severity

Medium

Analysis Summary

CVE-2021-29753 

IBM Business Automation Workflow 18. 19, 20, 21, and IBM Business Process Manager 8.5 and d8.6 transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

Impact

  • Information Disclosure

Affected Vendors

IBM

Affected Products

  • IBM Business Process Manager 8.5
  • IBM Business Process Manager 8.6
  • IBM Business Automation Workflow 18.0
  • IBM Business Automation Workflow 19.0
  • IBM Business Automation Workflow 20.0
  • IBM Business Automation Workflow 21.0

Remediation

Refer to IBM Advisory for patch, upgrade, or suggested workaround information.

https://www.ibm.com/support/pages/node/6513703