CVE-2020-4482
Published: Nov 6, 2020
Modified: Sep 16, 2024
CVSS v3.0
5.3
Description
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow an authenticated user to bypass security. A user with access to a snapshot could apply unauthorized additional statuses via direct rest calls. IBM X-Force ID: 181856.
| Vendor | Product | Versions |
|---|---|---|
IBM | UrbanCode Deploy | affected 6.2.7.3affected 7.0.3.0affected 7.0.4.0affected 6.2.7.4 |
CVSS v3.0 Details
CVSS v3.0 Vector
CVSS:3.0/C:N/AC:H/PR:L/I:H/A:N/S:U/UI:N/AV:N/RC:C/E:U/RL:O
Confidentiality
Attack Complexity
Privileges Required
Integrity
Availability
Scope
User Interaction
Attack Vector
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now