CVE-2020-4260Sensitive Information Exposure in IBM Urbancode Deploy

Severity
4.3MEDIUMNVD
EPSS
0.1%
top 69.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 16
Latest updateMay 24

Description

IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive information via generic processes. IBM X-Force ID: 175639.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

NVDibm/urbancode_deploy6.2.7.36.2.7.7+1
CVEListV5ibm/urbancode_deploy7.0.5

🔴Vulnerability Details

2
GHSA
GHSA-3qwm-q2c3-qv6x: IBM UrbanCode Deploy (UCD) 72022-05-24
CVEList
CVE-2020-4260: IBM UrbanCode Deploy (UCD) 72020-04-16
CVE-2020-4260 — Sensitive Information Exposure in IBM | cvebase