PT-2021-12195 · Ibm · Ibm Urbancode Deploy

Published

2021-03-30

·

Updated

2022-07-12

·

CVE-2020-4848

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM UrbanCode Deploy versions 6.2.7.9, 7.0.5.4, and 7.1.1.1
Description The issue allows an authenticated user to initiate a plugin or compare process resources that they should not have access to.
Recommendations For version 6.2.7.9, update to a version that includes the fix for this issue. For version 7.0.5.4, update to a version that includes the fix for this issue. For version 7.1.1.1, update to a version that includes the fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-4848

Affected Products

Ibm Urbancode Deploy