Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-45784 | IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7177856 |
|
Fri, 20 Jun 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:devops_deploy:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:*:*:*:*:*:*:*:* |
Mon, 06 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 06 Jan 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM UrbanCode Deploy (UCD) 7.2 through 7.2.3.13, 7.3 through 7.3.2.8, and IBM DevOps Deploy 8.0 through 8.0.1.3 are vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web UI potentially leading to sensitive information disclosure. | |
| Title | IBM DevOps Deploy / IBM UrbanCode Deploy HTML injection | |
| First Time appeared |
Ibm
Ibm devops Deploy Ibm urbancode Deploy |
|
| Weaknesses | CWE-80 | |
| CPEs | cpe:2.3:a:ibm:devops_deploy:8.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:devops_deploy:8.0.1.3:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:7.2.3.13:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:7.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:7.3.2.8:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:7.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm devops Deploy Ibm urbancode Deploy |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-27T21:33:04.984Z
Reserved: 2024-10-28T10:50:18.700Z
Link: CVE-2024-51472
Updated: 2025-01-06T17:10:13.492Z
Status : Analyzed
Published: 2025-01-06T17:15:38.517
Modified: 2025-06-20T18:09:43.640
Link: CVE-2024-51472
No data.
OpenCVE Enrichment
No data.
EUVD