First published: Wed Dec 18 2019(Updated: )
IBM UrbanCode Deploy (UCD) 7.0.3 and IBM UrbanCode Build 6.1.5 could allow a local user to obtain sensitive information by unmasking certain secure values in documents. IBM X-Force ID: 171248.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM UrbanCode Build | <=6.1.5 | |
IBM UrbanCode Deploy | <=7.0.3 | |
IBM UCB - IBM UrbanCode Build | <=All |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4666 is a vulnerability in IBM UrbanCode Deploy (UCD) and IBM UrbanCode Build that allows a local user to obtain sensitive information by unmasking certain secure values in documents.
CVE-2019-4666 allows a local user to obtain sensitive information in IBM UrbanCode Deploy by unmasking certain secure values in documents.
CVE-2019-4666 allows a local user to obtain sensitive information in IBM UrbanCode Build by unmasking certain secure values in documents.
CVE-2019-4666 has a severity rating of low with a value of 2.3.
To fix CVE-2019-4666 in IBM UrbanCode Deploy, update to a version that is not affected by the vulnerability.
To fix CVE-2019-4666 in IBM UrbanCode Build, update to a version that is not affected by the vulnerability.