IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7182840 |
|
History
Fri, 15 Aug 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm devops Deploy
|
|
| CPEs | cpe:2.3:a:ibm:devops_deploy:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:devops_deploy:8.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm devops Deploy
|
Wed, 12 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 08 Feb 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function. | |
| Title | IBM UrbanCode Deploy missing authentication | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2025-02-08T16:15:40.041Z
Updated: 2025-02-22T22:12:32.094Z
Reserved: 2024-11-30T14:47:55.533Z
Link: CVE-2024-54176
Updated: 2025-02-12T20:46:30.504Z
Status : Analyzed
Published: 2025-02-08T17:15:21.643
Modified: 2025-08-15T12:33:18.683
Link: CVE-2024-54176
No data.