Known vulnerabilities in UCV – UrbanCode Velocity
Vendor:
IBM Corporation
Software:
UCV – UrbanCode Velocity
Software CPE:
cpe:2.3:a:ibm_corporation:ucv_–_urbancode_velocity:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU54394 - Incorrect Regular Expression CVE-2020-28500 |
CWE-185 | Medium | 2.4.0 | 27.06.2021 |
SB2021062702 SB2021062703 SB2021090905 and 30 more |
||
| #VU53202 - Command injection CVE-2021-23337 |
CWE-77 | Medium | 2.4.0 | 12.05.2021 |
SB2021021525 SB2021051230 SB2021062703 and 56 more |
||
| #VU41989 - Improper Control of Generation of Code ('Code Injection') CVE-2020-8203 |
CWE-94 | Medium | 2.4.0 | 10.08.2020 |
SB2020071548 SB2020122111 SB2021042308 and 31 more |