IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an authenticated user to obtain sensitive information about other users on the system due to missing authorization for a function.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7182840 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-02-08 17:15
Updated : 2025-08-15 12:33
NVD link : CVE-2024-54176
Mitre link : CVE-2024-54176
CVE.ORG link : CVE-2024-54176
JSON object : View
Products Affected
ibm
- urbancode_deploy
- devops_deploy
CWE
CWE-306
Missing Authentication for Critical Function
