VYPR
Medium severity4.9NVD Advisory· Published Mar 18, 2022· Updated Jun 17, 2026

CVE-2021-39046

CVE-2021-39046

Description

IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 stores user credentials in plain clear text which can be read by a lprivileged user. IBM X-Force ID: 214346.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

15
  • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:*:*:*:*+ 10 more
    • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:19.0.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:19.0.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:19.0.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:20.0.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:20.0.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:21.0.2:*:*:*:*:*:*:*
    • (no CPE)range: 18.0, 19.0, 20.0, 21.0
    • (no CPE)range: 18.0.0.0
  • cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:business_process_manager:8.6:*:*:*:*:*:*:*
    • (no CPE)range: 8.5, 8.6
    • (no CPE)range: 8.5

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.