IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure. IBM X-Force ID: 265512.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/265512 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/7096546 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2023-12-19T02:12:19.966Z
Updated: 2023-12-19T02:12:19.966Z
Reserved: 2023-09-06T19:33:10.323Z
Link: CVE-2023-42015
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-12-19T03:15:07.950
Modified: 2023-12-27T18:52:58.957
Link: CVE-2023-42015
JSON object: View
Redhat Information
No data.
CWE