CVE-2016-0365

MEDIUM

IBM UrbanCode Deploy <6.0.1.13, <6.1.3.3, <6.2.1.1 - Auth Bypass

Title source: llm

Description

IBM UrbanCode Deploy 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1, when agent-relay Codestation artifact caching is enabled, allows remote attackers to bypass authentication and obtain sensitive artifact information via unspecified vectors.

Scores

CVSS v3 5.9
EPSS 0.0019
EPSS Percentile 40.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-200
Status draft

Affected Products (36)

ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
ibm/urbancode_deploy
... and 21 more

Timeline

Published Jul 01, 2016
Tracked Since Feb 18, 2026