Ibm Urbancode Deploy vulnerabilities
66 known vulnerabilities affecting ibm/urbancode_deploy.
Total CVEs
66
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH14MEDIUM49LOW2
Vulnerabilities
Page 4 of 4
CVE-2020-4260P4MEDIUMCVSS 4.3≥ 6.2.7.3, < 6.2.7.7≥ 7.0.3.0, ≤ 7.0.5.0+1 more2020-04-16
CVE-2020-4260 [MEDIUM] CVE-2020-4260: IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive inf
IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive information via generic processes. IBM X-Force ID: 175639.
nvd
CVE-2020-4483P4MEDIUMCVSS 4.3v6.2.7.3v6.2.7.4+2 more2020-11-06
CVE-2020-4483 [MEDIUM] CWE-209 CVE-2020-4483: IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to o
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181857.
nvd
CVE-2022-22366P4MEDIUMCVSS 4.4v6.2.7.15v7.0.5.10+2 more2022-07-01
CVE-2022-22366 [MEDIUM] CWE-312 CVE-2022-22366: IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain
IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 22106.
nvd
CVE-2014-6074P4MEDIUMCVSS 4.0v6.1.0.22014-09-10
CVE-2014-6074 [MEDIUM] CWE-310 CVE-2014-6074: IBM UrbanCode Deploy 6.1.0.2 before IF1 allows remote authenticated users to read keystore secret ke
IBM UrbanCode Deploy 6.1.0.2 before IF1 allows remote authenticated users to read keystore secret keys via a direct request to a UI page.
nvd
CVE-2024-51472P4LOWCVSS 3.1≥ 7.2, ≤ 7.2.3.13≥ 7.3, ≤ 7.3.2.82025-01-06
CVE-2024-51472 [LOW] CWE-80 CVE-2024-51472: IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 thro
IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure.
nvd
CVE-2019-4666P4LOWCVSS 2.3≤ 7.0.3v7.0.32020-02-13
CVE-2019-4666 [LOW] CVE-2019-4666: IBM UrbanCode Deploy (UCD) 7.0.3 and IBM UrbanCode Build 6.1.5 could allow a local user to obtain se
IBM UrbanCode Deploy (UCD) 7.0.3 and IBM UrbanCode Build 6.1.5 could allow a local user to obtain sensitive information by unmasking certain secure values in documents. IBM X-Force ID: 171248.
nvd
← Previous4 / 4