IBM UrbanCode Deploy 6.0 through 6.2.2.1 could allow an authenticated user to read sensitive information due to UCD REST endpoints not properly authorizing users when determining who can read data. IBM X-Force ID: 112119.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/112119 | VDB Entry Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg2C1000219 | Patch Vendor Advisory |
Configurations
Information
Published : 2018-08-30 09:29
Updated : 2019-10-09 16:16
NVD link : CVE-2016-0373
Mitre link : CVE-2016-0373
JSON object : View
CWE
CWE-285
Improper Authorization
Products Affected
ibm
- urbancode_deploy