← back
CVE-2022-43877

IBM UrbanCode Deploy (UCD) information disclosure

CVSS 5.1 MEDIUMEPSS 0.2%CWE-922
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.1EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
06 May 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
IBM · UrbanCode Deploy

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →