{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"state":"PUBLISHED","cveId":"CVE-2022-22503","assignerOrgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","assignerShortName":"ibm","datePublished":"2022-10-06T17:15:25.355Z","dateUpdated":"2024-09-17T03:47:38.832Z","dateReserved":"2022-01-03T00:00:00.000Z"},"containers":{"cna":{"datePublic":"2022-10-03T00:00:00.000Z","providerMetadata":{"orgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","shortName":"ibm","dateUpdated":"2022-10-11T00:00:00.000Z"},"descriptions":[{"lang":"en","value":"IBM Robotic Process Automation 21.0.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 227125."}],"affected":[{"vendor":"IBM","product":"Robotic Process Automation","versions":[{"version":"21.0.0","status":"affected"}]}],"references":[{"url":"https://www.ibm.com/support/pages/node/6825995"},{"name":"ibm-rpa-cve202222503-clickjacking (227125)","tags":["vdb-entry"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/227125"}],"metrics":[{"cvssV3_0":{"version":"3.0","vectorString":"CVSS:3.0/I:L/C:L/UI:R/PR:N/A:N/S:C/AV:N/AC:L/RL:O/RC:C/E:U","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","exploitCodeMaturity":"UNPROVEN","remediationLevel":"OFFICIAL_FIX","reportConfidence":"CONFIRMED","baseScore":6.1,"temporalScore":5.3,"baseSeverity":"MEDIUM","temporalSeverity":"MEDIUM"}}],"problemTypes":[{"descriptions":[{"type":"text","lang":"en","description":"Gain Access"}]}]},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-03T03:14:55.335Z"},"title":"CVE Program Container","references":[{"url":"https://www.ibm.com/support/pages/node/6825995","tags":["x_transferred"]},{"name":"ibm-rpa-cve202222503-clickjacking (227125)","tags":["vdb-entry","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/227125"}]}]}}