IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7172750 |
|
History
Thu, 14 Aug 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:urbancode_velocity:*:*:*:*:*:*:*:* |
Tue, 21 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 20 Jan 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. 25 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | |
| Title | IBM UrbanCode Velocity information disclosure | |
| First Time appeared |
Ibm
Ibm devops Velocity Ibm urbancode Velocity |
|
| Weaknesses | CWE-327 | |
| CPEs | cpe:2.3:a:ibm:devops_velocity:5.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_velocity:4.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_velocity:4.0.15:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm devops Velocity Ibm urbancode Velocity |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2025-01-20T17:41:43.506Z
Updated: 2025-01-21T14:46:25.668Z
Reserved: 2024-01-08T23:42:25.451Z
Link: CVE-2024-22347
Updated: 2025-01-21T14:46:10.289Z
Status : Analyzed
Published: 2025-01-20T18:15:13.540
Modified: 2025-08-14T01:21:30.420
Link: CVE-2024-22347
No data.