CVE-2017-1749

MEDIUM

IBM UrbanCode Deploy 6.1-6.9.6.0 - Unauthenticated Path Traversal

Title source: llm
STIX 2.1

Description

IBM UrbanCode Deploy 6.1 through 6.9.6.0 could allow a remote attacker to traverse directories on the system. An unauthenticated attacker could alter UCD deployments. IBM X-Force ID: 135522.

References (2)

Core 2
Core References
VDB Entry, Vendor Advisory vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/135522
Broken Link, Vendor Advisory x_refsource_confirm
https://www.ibm.com/support/docview.wss?uid=swg2C1000374

Scores

CVSS v3 5.3
EPSS 0.0244
EPSS Percentile 82.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Details

CWE
CWE-22
Status published
Products (1)
ibm/urbancode_deploy 6.1 - 6.9.6.0
Published Aug 13, 2018
Tracked Since Feb 18, 2026