CVE-2020-4184
- EPSS 0.25%
- Veröffentlicht 15.03.2021 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:21
IBM Security Guardium 11.2 performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. IBM X-Force ID: 174802..
- EPSS 0.7%
- Veröffentlicht 27.01.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:33:28
IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-Force ID: 192028.
CVE-2020-4189
- EPSS 0.06%
- Veröffentlicht 27.01.2021 17:15:10
- Zuletzt bearbeitet 21.11.2024 05:32:22
IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system. IBM X-Force ID: 174850.
CVE-2020-4688
- EPSS 0.14%
- Veröffentlicht 20.01.2021 15:15:42
- Zuletzt bearbeitet 21.11.2024 05:33:07
IBM Security Guardium 10.6 and 11.2 could allow a local attacker to execute arbitrary commands on the system as an unprivileged user, caused by command injection vulnerability. IBM X-Force ID: 186700.
CVE-2020-4921
- EPSS 0.54%
- Veröffentlicht 20.01.2021 15:15:42
- Zuletzt bearbeitet 21.11.2024 05:33:25
IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191...
CVE-2020-4689
- EPSS 0.78%
- Veröffentlicht 12.10.2020 14:15:13
- Zuletzt bearbeitet 21.11.2024 05:33:07
IBM Security Guardium 11.2 is vulnerable to CVS Injection. A remote privileged attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-ForceID: 186696.
CVE-2020-4678
- EPSS 0.22%
- Veröffentlicht 12.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:06
IBM Security Guardium 11.2 could allow an attacker with admin access to obtain and read files that they normally would not have access to. IBM X-Force ID: 186423.
CVE-2020-4679
- EPSS 0.25%
- Veröffentlicht 12.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:06
IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted...
CVE-2020-4680
- EPSS 0.21%
- Veröffentlicht 12.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:06
IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted...
CVE-2020-4681
- EPSS 0.24%
- Veröffentlicht 12.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:07
IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted...