IBM Business Automation Workflow 22.0.2, 23.0.1, 23.0.2, and 24.0.0 could allow a privileged user to perform unauthorized activities due to improper client side validation.
The product is composed of a server that relies on the client to implement a mechanism that is intended to protect the server.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7168769 | vendor advisory |