IBM UrbanCode Deploy 6.0 through 6.2.2.1 could allow an authenticated user to read sensitive information due to UCD REST endpoints not properly authorizing users when determining who can read data. IBM X-Force ID: 112119.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg2C1000219 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/112119 | VDB Entry Vendor Advisory |
Configurations
History
No history.
Information
Published : 2018-08-30 16:29
Updated : 2019-10-09 23:16
NVD link : CVE-2016-0373
Mitre link : CVE-2016-0373
CVE.ORG link : CVE-2016-0373
JSON object : View
Products Affected
ibm
- urbancode_deploy
CWE
CWE-285
Improper Authorization