7.2
CVSSv2

CVE-2016-0271

Published: 08/07/2016 Updated: 08/07/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.2 | Impact Score: 6 | Exploitability Score: 1.5
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The agents in IBM UrbanCode Deploy 6.x prior to 6.0.1.14, 6.1.x prior to 6.1.3.3, and 6.2.x prior to 6.2.1.1 do not verify a server's identity in a JMS session or an HTTP session, which allows local users to obtain root access to arbitrary agents via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm urbancode deploy 6.1.3.1

ibm urbancode deploy 6.1.2

ibm urbancode deploy 6.1.1.4

ibm urbancode deploy 6.1.1.2

ibm urbancode deploy 6.1

ibm urbancode deploy 6.0.1.9

ibm urbancode deploy 6.0.1.2

ibm urbancode deploy 6.0.1.10

ibm urbancode deploy 6.2.1

ibm urbancode deploy 6.2.0.2

ibm urbancode deploy 6.2.0.1

ibm urbancode deploy 6.2.0.0

ibm urbancode deploy 6.1.1.0

ibm urbancode deploy 6.1.0.4

ibm urbancode deploy 6.1.0.3

ibm urbancode deploy 6.1.0.2

ibm urbancode deploy 6.1.0.1

ibm urbancode deploy 6.0.1.1

ibm urbancode deploy 6.0.1.0

ibm urbancode deploy 6.0

ibm urbancode deploy 6.1.1.8

ibm urbancode deploy 6.1.1.7

ibm urbancode deploy 6.1.1.6

ibm urbancode deploy 6.1.1.5

ibm urbancode deploy 6.0.1.7

ibm urbancode deploy 6.0.1.6

ibm urbancode deploy 6.0.1.5

ibm urbancode deploy 6.0.1.4

ibm urbancode deploy 6.0.1.13

ibm urbancode deploy 6.1.3.2

ibm urbancode deploy 6.1.3

ibm urbancode deploy 6.1.1.3

ibm urbancode deploy 6.1.1.1

ibm urbancode deploy 6.0.1.12

ibm urbancode deploy 6.0.1.8

ibm urbancode deploy 6.0.1.3

ibm urbancode deploy 6.0.1.11