Show filters
59 Total Results
Displaying 21-30 of 59
Sort by:
Attacker Value
Unknown

CVE-2022-22366

Disclosure Date: June 30, 2022 (last updated October 07, 2023)
IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 22106.
Attacker Value
Unknown

CVE-2021-39082

Disclosure Date: April 28, 2022 (last updated October 07, 2023)
IBM UrbanCode Deploy (UCD) 7.1.1.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Attacker Value
Unknown

CVE-2022-22315

Disclosure Date: April 26, 2022 (last updated October 07, 2023)
IBM UrbanCode Deploy (UCD) 7.2.2.1 could allow an authenticated user with special permissions to obtain elevated privileges due to improper handling of permissions. IBM X-Force ID: 217955.
Attacker Value
Unknown

CVE-2022-22327

Disclosure Date: March 31, 2022 (last updated October 07, 2023)
IBM UrbanCode Deploy (UCD) 7.0.5, 7.1.0, 7.1.1, and 7.1.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 218859.
Attacker Value
Unknown

CVE-2021-29711

Disclosure Date: July 07, 2021 (last updated November 28, 2024)
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 6.2.7.8 , 6.2.7.9, 7.0.3.0, 7.0.4.0, 7.0.5.4, 7.1.0.0, 7.1.1.0, 7.1.1.1, and 7.1.1.2 could allow an authenticated user with certain permissions to initiate an agent upgrade through the CLI interface. IBM X-Force ID: 200965.
Attacker Value
Unknown

CVE-2020-4848

Disclosure Date: March 29, 2021 (last updated November 28, 2024)
IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 could allow an authenticated user to initiate a plugin or compare process resources that they should not have access to. IBM X-Force ID: 190293.
Attacker Value
Unknown

CVE-2020-4944

Disclosure Date: March 29, 2021 (last updated February 22, 2025)
IBM UrbanCode Deploy (UCD) 7.0.3.0, 7.0.4.0, 7.0.5.3, 7.0.5.4, 7.1.0.0, 7.1.1.0, 7.1.1.1, and 7.1.1.2, stores keystore passwords in plain text after a manual edit, which can be read by a local user. IBM X-Force ID: 191944.
Attacker Value
Unknown

CVE-2020-4884

Disclosure Date: March 29, 2021 (last updated February 22, 2025)
IBM UrbanCode Deploy (UCD) 6.2.7.9, 7.0.5.4, and 7.1.1.1 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 190908.
Attacker Value
Unknown

CVE-2020-4483

Disclosure Date: November 05, 2020 (last updated February 22, 2025)
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181857.
Attacker Value
Unknown

CVE-2020-4482

Disclosure Date: November 05, 2020 (last updated November 28, 2024)
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow an authenticated user to bypass security. A user with access to a snapshot could apply unauthorized additional statuses via direct rest calls. IBM X-Force ID: 181856.