CVE-2016-2942
UNKNOWN
Published 2017-02-01T22:00:00
Actions:
Expert Analysis
Professional remediation guidance
Get tailored security recommendations from our analyst team for CVE-2016-2942. We'll provide specific mitigation strategies based on your environment and risk profile.
No CVSS data available
Description
IBM UrbanCode Deploy could allow an authenticated attacker with special permissions to craft a script on the server in a way that will cause processes to run on a remote UCD agent machine.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
6.1.0.2
6.0
6.0.1
6.0.1.1
6.0.1.2
6.0.1.3
6.0.1.4
6.0.1.5
6.0.1.6
6.1
6.1.0.1
6.1.0.3
6.0.1.7
6.0.1.8
6.1.0.4
6.1.1
6.1.1.1
6.1.1.2
6.1.1.3
6.1.1.4
6.1.1.5
6.0.1.9
6.1.1.6
6.1.1.7
6.1.2
6.0.1.10
6.0.1.11
6.1.1.8
6.1.3
6.1.3.1
6.2
6.2.0.1
6.0.1.12
6.1.3.2
6.2.0.2
6.2.1
6.0.1.13
6.2.1.1
6.0.1.14
6.1.3.3
6.2.1.2
6.2.2
GitHub Security Advisories
Community-driven vulnerability intelligence from GitHub
⚠ Unreviewed
HIGH
GHSA-mr5v-83xw-vqxr
Advisory Details
IBM UrbanCode Deploy could allow an authenticated attacker with special permissions to craft a script on the server in a way that will cause processes to run on a remote UCD agent machine.
CVSS Scoring
CVSS Score
7.5
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
References
Advisory provided by GitHub Security Advisory Database. Published: May 17, 2022, Modified: May 17, 2022
References
Published: 2017-02-01T22:00:00
Last Modified: 2024-08-05T23:40:13.765Z
Copied to clipboard!