IBM Security Bulletin: Authenticated Users Can Gain Privilege in IBM UrbanCode Deploy (CVE-2017-1493)

Previous releases of IBM UrbanCode Deploy allow authenticated users to view and edit information they do not have permission to.

CVE(s): CVE-2017-1493

Affected product(s) and affected version(s):

All fixpacks of IBM UrbanCode Deploy 6.1 – 6.1.3.6 and IBM UrbanCode Deploy 6.2 – 6.2.6.1 are affected.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2qtHuGZ
X-Force Database: http://ift.tt/2m3DFn7

The post IBM Security Bulletin: Authenticated Users Can Gain Privilege in IBM UrbanCode Deploy (CVE-2017-1493) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2qz8RiX