CVE-2020-4260: Medium severity IBM UCD - IBM UrbanCode Deploy vulnerability
Published Apr 15, 2020
·Updated
IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive information via generic processes. IBM X-Force ID: 175639.
Other sources
IBM UrbanCode Deploy (UCD) could allow a user with special permissions to obtain sensitive information via generic processes.
— IBM
Affected Software
7 affected components
IBM UCD - IBM UrbanCode Deploy<=6.2.7.4
IBM UCD - IBM UrbanCode Deploy<=6.2.7.3
IBM UCD - IBM UrbanCode Deploy<=7.0.4.0
IBM UCD - IBM UrbanCode Deploy<=7.0.3.0
IBM UCD - IBM UrbanCode Deploy<=All
IBM UrbanCode Deploy>=6.2.7.3<6.2.7.7
IBM UrbanCode Deploy>=7.0.3.0<=7.0.5.0
Event History
Apr 15, 2020
CVE Published
via IBM·12:00 AM
Apr 16, 2020
CVE Published
via MITRE·03:35 PM
Data Sourced
via MITRE·03:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for IBM UrbanCode Deploy (UCD)?
The vulnerability ID for IBM UrbanCode Deploy (UCD) is CVE-2020-4260.
2
What is the severity level of CVE-2020-4260?
The severity level of CVE-2020-4260 is medium (4.3).
3
How can an attacker exploit CVE-2020-4260?
An attacker with special permissions can exploit CVE-2020-4260 to obtain sensitive information via generic processes.
4
Which versions of IBM UrbanCode Deploy are affected by CVE-2020-4260?
IBM UrbanCode Deploy versions 6.2.7.4, 6.2.7.3, 7.0.4.0, 7.0.3.0, and 7.0.5.0 are affected by CVE-2020-4260.
5
Where can I find more information about CVE-2020-4260?
More information about CVE-2020-4260 can be found on the IBM X-Force ID: 175639 page and the IBM support page.