IBM Robotic Process Automation 21.0.0 through 21.0.7.19 and 23.0.0 through 23.0.19 could allow a remote attacker to obtain sensitive data that may be exposed through certain crypto-analytic attacks.
The product uses the RSA algorithm but does not incorporate Optimal Asymmetric Encryption Padding (OAEP), which might weaken the encryption.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Robotic_process_automation | Ibm | 21.0.0 (including) | 21.0.7.19 (including) |
Robotic_process_automation | Ibm | 23.0.0 (including) | 23.0.19 (including) |