Page 13 of 182 results (0.003 seconds)

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

IBM Security Guardium 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 192710. IBM Security Guardium versión 11.2 es vulnerable a una inyección SQL. Un atacante remoto podría enviar declaraciones SQL especialmente diseñadas, que podrían permitir al atacante visualizar, agregar, modificar o eliminar información en la base de datos del back-end. • https://exchange.xforce.ibmcloud.com/vulnerabilities/192710 https://www.ibm.com/support/pages/node/6455265 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

IBM Security Guardium 11.2 performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. IBM X-Force ID: 174802.. IBM Security Guardium versión 11.2, lleva a cabo una operación a un nivel de privilegio superior al nivel mínimo requerido, lo que crea nuevas debilidades o amplifica las consecuencias de otras debilidades. IBM X-Force ID: 174802 • https://exchange.xforce.ibmcloud.com/vulnerabilities/174802 https://www.ibm.com/support/pages/node/6429569 • CWE-269: Improper Privilege Management •

CVSS: 9.0EPSS: 0%CPEs: 2EXPL: 0

IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-Force ID: 192028. IBM Security Guardium versión 11.2, podría permitir a un usuario autenticado conseguir acceso root debido a un control de acceso inapropiado. IBM X-Force ID: 192028 • https://exchange.xforce.ibmcloud.com/vulnerabilities/192028 https://www.ibm.com/support/pages/node/6408630 •

CVSS: 4.3EPSS: 0%CPEs: 2EXPL: 0

IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system. IBM X-Force ID: 174850. IBM Security Guardium versión 11.2, divulga información confidencial en los encabezados de respuesta que podría ser usada en futuros ataques contra el sistema. IBM X-Force ID: 174850 • https://exchange.xforce.ibmcloud.com/vulnerabilities/174850 https://www.ibm.com/support/pages/node/6408634 • CWE-312: Cleartext Storage of Sensitive Information •

CVSS: 8.8EPSS: 0%CPEs: 3EXPL: 0

IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191398. IBM Security Guardium versiones 10.6 y 11.2, es vulnerable a una inyección SQL. Un atacante remoto podría enviar sentencias SQL especialmente diseñadas, lo que podría permitir al atacante visualizar, agregar, modificar o eliminar información en la base de datos del back-end. • https://exchange.xforce.ibmcloud.com/vulnerabilities/191398 https://www.ibm.com/support/pages/node/6405952 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •