CVE-2012-3309
published 2012-08-29CVE-2012-3309: Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka…
medium6.8CVSS 3.1
AVNACMAuNCPIPAP
Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | infosphere_guardium | <= 8.2 | — |
| ibm | infosphere_guardium | — | — |
| ibm | infosphere_guardium | — | — |