Medium severity4.9NVD Advisory· Published Mar 18, 2022· Updated Jun 17, 2026
CVE-2021-39046
CVE-2021-39046
Description
IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 stores user credentials in plain clear text which can be read by a lprivileged user. IBM X-Force ID: 214346.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
15cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:*:*:*:*+ 10 more
- cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:18.0.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:18.0.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:19.0.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:19.0.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:19.0.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:20.0.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:20.0.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:21.0.2:*:*:*:*:*:*:*
- (no CPE)range: 18.0, 19.0, 20.0, 21.0
- (no CPE)range: 18.0.0.0
cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:business_process_manager:8.6:*:*:*:*:*:*:*
- (no CPE)range: 8.5, 8.6
- (no CPE)range: 8.5
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/pages/node/6564387nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/214346nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.