Skip to main content

Vendor/product archive

ibm / infosphere_guardium CVEs

Beta · best-effort

9 CVEs tagged to ibm / infosphere_guardium0 Critical, 2 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2012-3341

Published Sep 1, 2020

IBM InfoSphere Guardium 7.0, 8.0, 8.01, and 8.2 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this v…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3340

Published Sep 1, 2020

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to XML external entity injection, caused by improper validation of user-supplied input. A remote authenticated attacker co…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3338

Published Sep 1, 2020

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to bypass security restrictions, caused by improper restrictions on the create new user account functional…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3337

Published Sep 1, 2020

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing &…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3336

Published Sep 1, 2020

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statements to multiple scripts, which c…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-0490

Published Feb 27, 2013

Unspecified vulnerability in IBM InfoSphere Guardium S-TAP 8.1 for DB2 on z/OS allows local users to gain privileges via unknown vectors.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-3312

Published Aug 29, 2012

The datasource definition editor in IBM InfoSphere Guardium 8.2 and earlier, when the save-password setting is enabled, transmits cleartext database credentials, which allows remo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3309

Published Aug 29, 2012

Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disa…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1