First published: Mon Jul 18 2022(Updated: )
IBM UrbanCode Deploy (UCD) 6.2.0.0 through 6.2.7.16, 7.0.0.0 through 7.0.5.11, 7.1.0.0 through 7.1.2.7, and 7.2.0.0 through 7.2.3.0 could allow an authenticated user to obtain sensitive information in some instances due to improper security checking. IBM X-Force ID: 231360.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM UrbanCode Deploy | >=6.2.0.0<6.2.7.17 | |
IBM UrbanCode Deploy | >=7.0.0.0<7.0.5.12 | |
IBM UrbanCode Deploy | >=7.1.0.0<7.1.2.8 | |
IBM UrbanCode Deploy | >=7.2.0.0<7.2.3.1 | |
IBM UrbanCode Deploy | <=6.2.0.0 - 6.2.7.16 | |
IBM UrbanCode Deploy | <=7.0.0.0 - 7.0.5.11 | |
IBM UrbanCode Deploy | <=7.1.0.0 - 7.1.2.7 | |
IBM UrbanCode Deploy | <=7.2.0.0 - 7.2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-35716 is medium.
The affected software for CVE-2022-35716 is IBM UrbanCode Deploy (UCD) versions 6.2.0.0 through 6.2.7.16, 7.0.0.0 through 7.0.5.11, 7.1.0.0 through 7.1.2.7, and 7.2.0.0 through 7.2.3.0.
An authenticated user can exploit CVE-2022-35716 to obtain sensitive information in some instances due to improper security checking.
The IBM X-Force ID for CVE-2022-35716 is 231360.
Please refer to the official IBM support page for information on how to fix CVE-2022-35716.