CVE-2022-35716

MEDIUM

IBM UrbanCode Deploy <7.2.3.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

IBM UrbanCode Deploy (UCD) 6.2.0.0 through 6.2.7.16, 7.0.0.0 through 7.0.5.11, 7.1.0.0 through 7.1.2.7, and 7.2.0.0 through 7.2.3.0 could allow an authenticated user to obtain sensitive information in some instances due to improper security checking. IBM X-Force ID: 231360.

References (2)

Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
https://www.ibm.com/support/pages/node/6608584
VDB Entry, Vendor Advisory vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/231360

Scores

CVSS v3 6.5
EPSS 0.0014
EPSS Percentile 34.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-863
Status published
Products (1)
ibm/urbancode_deploy 6.2.0.0 - 6.2.7.17
Published Aug 01, 2022
Tracked Since Feb 18, 2026