cbcvebase.

Ibm Urbancode Deploy vulnerabilities

66 known vulnerabilities affecting ibm/urbancode_deploy.

Total CVEs
66
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH14MEDIUM49LOW2

Vulnerabilities

Page 4 of 4
CVE-2020-4260P4MEDIUMCVSS 4.3≥ 6.2.7.3, < 6.2.7.7≥ 7.0.3.0, ≤ 7.0.5.0+1 more2020-04-16
CVE-2020-4260 [MEDIUM] CVE-2020-4260: IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive inf IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive information via generic processes. IBM X-Force ID: 175639.
nvd
CVE-2020-4483P4MEDIUMCVSS 4.3v6.2.7.3v6.2.7.4+2 more2020-11-06
CVE-2020-4483 [MEDIUM] CWE-209 CVE-2020-4483: IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to o IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181857.
nvd
CVE-2022-22366P4MEDIUMCVSS 4.4v6.2.7.15v7.0.5.10+2 more2022-07-01
CVE-2022-22366 [MEDIUM] CWE-312 CVE-2022-22366: IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 22106.
nvd
CVE-2014-6074P4MEDIUMCVSS 4.0v6.1.0.22014-09-10
CVE-2014-6074 [MEDIUM] CWE-310 CVE-2014-6074: IBM UrbanCode Deploy 6.1.0.2 before IF1 allows remote authenticated users to read keystore secret ke IBM UrbanCode Deploy 6.1.0.2 before IF1 allows remote authenticated users to read keystore secret keys via a direct request to a UI page.
nvd
CVE-2024-51472P4LOWCVSS 3.1≥ 7.2, ≤ 7.2.3.13≥ 7.3, ≤ 7.3.2.82025-01-06
CVE-2024-51472 [LOW] CWE-80 CVE-2024-51472: IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 thro IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure.
nvd
CVE-2019-4666P4LOWCVSS 2.3≤ 7.0.3v7.0.32020-02-13
CVE-2019-4666 [LOW] CVE-2019-4666: IBM UrbanCode Deploy (UCD) 7.0.3 and IBM UrbanCode Build 6.1.5 could allow a local user to obtain se IBM UrbanCode Deploy (UCD) 7.0.3 and IBM UrbanCode Build 6.1.5 could allow a local user to obtain sensitive information by unmasking certain secure values in documents. IBM X-Force ID: 171248.
nvd
Ibm Urbancode Deploy vulnerabilities | cvebase