PT-2024-19344 · Microsoft+1 · Windows+1
Published
2024-02-06
·
Updated
2024-02-13
·
CVE-2024-22331
CVSS v3.1
6.2
Medium
| Vector | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM UrbanCode Deploy versions 7.0 through 7.0.5.19
IBM UrbanCode Deploy versions 7.1 through 7.1.2.15
IBM UrbanCode Deploy versions 7.2 through 7.2.3.8
IBM UrbanCode Deploy versions 7.3 through 7.3.2.3
IBM UrbanCode Deploy (UCD) - IBM DevOps Deploy version 8.0.0.0
Description
The issue could disclose sensitive user information when installing the Windows agent.
Recommendations
For IBM UrbanCode Deploy versions 7.0 through 7.0.5.19, update to a version later than 7.0.5.19.
For IBM UrbanCode Deploy versions 7.1 through 7.1.2.15, update to a version later than 7.1.2.15.
For IBM UrbanCode Deploy versions 7.2 through 7.2.3.8, update to a version later than 7.2.3.8.
For IBM UrbanCode Deploy versions 7.3 through 7.3.2.3, update to a version later than 7.3.2.3.
For IBM UrbanCode Deploy (UCD) - IBM DevOps Deploy version 8.0.0.0, update to a version later than 8.0.0.0.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Urbancode Deploy
Windows