A hardcoded cryptographic key in Automation360 22 allows an attacker to decrypt exported RPA packages.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://www.automationanywhere.com/products/automation-360 | product vendor advisory |
https://dolosgroup.io/blog | third party advisory exploit |