IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.ibm.com/support/pages/node/7182840 |
![]() ![]() |
History
Fri, 15 Aug 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ibm devops Deploy
|
|
CPEs | cpe:2.3:a:ibm:devops_deploy:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:devops_deploy:8.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Ibm devops Deploy
|
Wed, 12 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 08 Feb 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function. | |
Title | IBM UrbanCode Deploy missing authentication | |
Weaknesses | CWE-306 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ibm
Published: 2025-02-08T16:15:40.041Z
Updated: 2025-02-22T22:12:32.094Z
Reserved: 2024-11-30T14:47:55.533Z
Link: CVE-2024-54176

Updated: 2025-02-12T20:46:30.504Z

Status : Analyzed
Published: 2025-02-08T17:15:21.643
Modified: 2025-08-15T12:33:18.683
Link: CVE-2024-54176

No data.