First published: Mon Jun 20 2022(Updated: )
IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 could disclose sensitive database information to a local user in plain text. IBM X-Force ID: 221008.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM UrbanCode Deploy | =6.2.7.15 | |
IBM UrbanCode Deploy | =7.0.5.10 | |
IBM UrbanCode Deploy | =7.1.2.6 | |
IBM UrbanCode Deploy | =7.2.2.1 | |
<=7.2.0.0 - 7.2.2.1 | ||
<=7.1.0.0 - 7.1.2.6 | ||
<=7.0.0.0 - 7.0.5.10 | ||
<=6.0.0.0 - 6.2.7.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-22367.
IBM UrbanCode Deploy (UCD) versions 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 are affected by this vulnerability.
CVE-2022-22367 has a severity rating of 5.5 (medium).
This vulnerability could be exploited by a local user to disclose sensitive database information in plain text.
IBM has provided a fix for this vulnerability. Users should update to the latest version of IBM UrbanCode Deploy.