CVE-2022-22315: High severity IBM UCD - IBM UrbanCode Deploy vulnerability
IBM UrbanCode Deploy (UCD) 7.2.2.1 could allow an authenticated user with special permissions to obtain elevated privileges due to improper handling of permissions. IBM X-Force ID: 217955.
Other sources
IBM UrbanCode Deploy (UCD) could allow an authenticated user with special permissions to obtain elevated privileges due to improper handling of permissions.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-22315?
CVE-2022-22315 is a vulnerability in IBM UrbanCode Deploy (UCD) that could allow an authenticated user with special permissions to obtain elevated privileges due to improper handling of permissions.
What is the severity of CVE-2022-22315?
CVE-2022-22315 has a severity rating of 8.8 (high).
How does CVE-2022-22315 affect IBM UrbanCode Deploy?
CVE-2022-22315 affects IBM UrbanCode Deploy versions 6.2.7.0 - 6.2.7.14, 7.0.3.0 - 7.0.3.3, 7.0.4.0 - 7.0.4.2, 7.0.5.0 - 7.0.5.9, 7.1.0.0 - 7.1.0.2, 7.1.1.0 - 7.1.1.2, 7.1.2.1 - 7.1.2.5, 7.2.0.0 - 7.2.0.2, and 7.2.2.0.
How can an attacker exploit CVE-2022-22315?
An attacker can exploit CVE-2022-22315 by leveraging their authenticated access with special permissions to elevate their privileges.
Is there a fix for CVE-2022-22315?
Yes, IBM has released a fix for CVE-2022-22315. It is recommended to update to the latest version of IBM UrbanCode Deploy that addresses this vulnerability.