Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-52845 | IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7182841 |
|
Mon, 18 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:devops_deploy:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:devops_deploy:8.1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:urbancode_deploy:*:*:*:*:*:*:*:* |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 14 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 14 Feb 2025 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements. | |
| Title | IBM DevOps Deploy / IBM UrbanCode Deploy command injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-02-14T14:46:04.073Z
Reserved: 2024-12-12T18:07:11.453Z
Link: CVE-2024-55904
Updated: 2025-02-14T14:45:44.146Z
Status : Analyzed
Published: 2025-02-14T04:15:08.753
Modified: 2025-08-18T18:14:40.550
Link: CVE-2024-55904
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:15:40Z
EUVD