PT-2021-12195 · Ibm · Ibm Urbancode Deploy
Published
2021-03-30
·
Updated
2022-07-12
·
CVE-2020-4848
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
IBM UrbanCode Deploy versions 6.2.7.9, 7.0.5.4, and 7.1.1.1
Description
The issue allows an authenticated user to initiate a plugin or compare process resources that they should not have access to.
Recommendations
For version 6.2.7.9, update to a version that includes the fix for this issue.
For version 7.0.5.4, update to a version that includes the fix for this issue.
For version 7.1.1.1, update to a version that includes the fix for this issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Urbancode Deploy