CVE-2016-0365: Infoleak
IBM UrbanCode Deploy 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1, when agent-relay Codestation artifact caching is enabled, allows remote attackers to bypass authentication and obtain sensitive artifact information via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0365?
CVE-2016-0365 has a high severity level due to its potential for unauthorized access to sensitive artifact information.
How do I fix CVE-2016-0365?
To fix CVE-2016-0365, update IBM UrbanCode Deploy to version 6.0.1.13, 6.1.3.3, or 6.2.1.1 or later.
Which versions are affected by CVE-2016-0365?
CVE-2016-0365 affects IBM UrbanCode Deploy versions 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1.
What type of attack does CVE-2016-0365 allow?
CVE-2016-0365 allows remote attackers to bypass authentication and obtain sensitive artifact information.
Are there workarounds for CVE-2016-0365?
While updating is the recommended approach, disabling Codestation artifact caching may serve as a temporary workaround for CVE-2016-0365.