Vulnerabilities
Vulnerable Software
Ibm:  >> Security Guardium  >> 11.2  Security Vulnerabilities
IBM Security Guardium 11.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 196313.
CVSS Score
5.9
EPSS Score
0.001
Published
2021-05-24
IBM Security Guardium 11.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196315.
CVSS Score
5.3
EPSS Score
0.002
Published
2021-05-24
IBM Security Guardium 11.2 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 199184.
CVSS Score
7.2
EPSS Score
0.017
Published
2021-05-24
IBM Security Guardium 11.2 performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. IBM X-Force ID: 174802..
CVSS Score
5.8
EPSS Score
0.002
Published
2021-03-15
IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-Force ID: 192028.
CVSS Score
8.8
EPSS Score
0.007
Published
2021-01-27
IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system. IBM X-Force ID: 174850.
CVSS Score
4.3
EPSS Score
0.001
Published
2021-01-27
IBM Security Guardium 10.6 and 11.2 could allow a local attacker to execute arbitrary commands on the system as an unprivileged user, caused by command injection vulnerability. IBM X-Force ID: 186700.
CVSS Score
5.9
EPSS Score
0.001
Published
2021-01-20
IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191398.
CVSS Score
7.6
EPSS Score
0.005
Published
2021-01-20
IBM Security Guardium 11.2 is vulnerable to CVS Injection. A remote privileged attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-ForceID: 186696.
CVSS Score
6.8
EPSS Score
0.008
Published
2020-10-12
IBM Security Guardium 11.2 could allow an attacker with admin access to obtain and read files that they normally would not have access to. IBM X-Force ID: 186423.
CVSS Score
4.9
EPSS Score
0.002
Published
2020-10-12


Contact Us

Shodan ® - All rights reserved