CVE-2018-1999: IBM Business Automation Workflow
Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.
IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system. IBM X-Force ID: 154889.
Affected products
- IBM Business Automation Workflow: version 18.0.0.0 only; version 18.0.0.1 only; version 18.0.0.2 only
- IBM Business Process Manager: from 8.0.0.0, up to and including 8.0.1.3; from 8.5.0.0, up to and including 8.5.0.2; version 8.5.5.0 only; version 8.5.6.0 only; version 8.5.7.0 only; version 8.6.0.0 only
Published 2019-04-08. Last modified 2026-06-17.