CVE-2019-4336: IBM Robotic Process Automation With Automation Anywhere

Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.

IBM Robotic Process Automation with Automation Anywhere 11 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 161411.

Affected products

  • IBM Robotic Process Automation With Automation Anywhere: from 11.0.0.0, before 11.0.0.5 (fixed in 11.0.0.5)

Published 2019-07-01. Last modified 2026-06-17.