Vulnerability Details CVE-2019-4298
IBM Robotic Process Automation with Automation Anywhere 11 uses a high privileged PostgreSQL account for database access which could allow a local user to perform actions they should not have privileges to execute. IBM X-Force ID: 160764.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.6%
CVSS Severity
CVSS v3 Score 7.7
CVSS v2 Score 3.6
Products affected by CVE-2019-4298
-
cpe:2.3:a:ibm:robotic_process_automation_with_automation_anywhere:11.0.0.0
-
cpe:2.3:a:ibm:robotic_process_automation_with_automation_anywhere:11.0.0.1
-
cpe:2.3:a:ibm:robotic_process_automation_with_automation_anywhere:11.0.0.2
-
cpe:2.3:a:ibm:robotic_process_automation_with_automation_anywhere:11.0.0.4