CVE-2022-43877: IBM UrbanCode Deploy (UCD) information disclosure
IBM UrbanCode Deploy (UCD) could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.
Other sources
IBM UrbanCode Deploy (UCD) could disclose sensitive password information if a manual edit of the agentrelay.properties file.
IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.
IBM UrbanCode Deploy information disclosure
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is IBM UrbanCode Deploy information disclosure vulnerability (CVE-2022-43877)?
IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file.
What is the severity of IBM UrbanCode Deploy information disclosure vulnerability (CVE-2022-43877)?
The severity of IBM UrbanCode Deploy information disclosure vulnerability (CVE-2022-43877) is medium with a severity value of 5.1.
Which versions of IBM UrbanCode Deploy are affected by the information disclosure vulnerability (CVE-2022-43877)?
IBM UrbanCode Deploy versions up to 7.3.0.1 are affected by the information disclosure vulnerability (CVE-2022-43877).
How can the IBM UrbanCode Deploy information disclosure vulnerability (CVE-2022-43877) be exploited?
The vulnerability can be exploited by manually editing the agentrelay.properties file, which can expose sensitive password information.
Is there any reference or more information available about the IBM UrbanCode Deploy information disclosure vulnerability (CVE-2022-43877)?
Yes, you can find more information about the vulnerability on the following references: [link1](https://exchange.xforce.ibmcloud.com/vulnerabilities/240148), [link2](https://www.ibm.com/support/pages/node/6967351), [link3](http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-43877).