IBM Alert
2678Warning Date
Severity Level
Warning Number
Target Sector
6 April, 2022
● Medium
2022-4623
All
IBM has released security updates to address several vulnerabilities in the following products:
- IBM WebSphere Application Server Liberty
- 21.0.0.12 – 22.0.0.1
- IBM Watson Query with Cloud Pak for Data as a Service
- IBM Business Automation Workflow traditional
- V21.0.1 – V21.0.2
- V20.0.0.1 – V20.0.0.2
- V19.0.0.1 – V19.0.0.3
- V18.0.0.0 – V18.0.0.1
- IBM Business Automation Workflow containers
- V21.0.1 – V21.0.2
- V20.0.0.1 – V20.0.0.2
- IBM Business Process Manager
- V8.6.0.0 – V8.6.0.201803
- V8.5.0.0 – V8.5.0.201706
- IBM Cloud Object Storage Systems
- 3.16.4.48 or Prior Releases
An attacker could exploit these vulnerabilities by doing the following:
- Cross-site scripting (XSS) attack
- Remote code execution
- Denial of service attack (DoS)
The CERT team encourages users to review IBM security advisory and apply the necessary updates: