CVE-2012-3336

CWE-89SQL Injection3 documents3 sources
Severity
8.8HIGH
EPSS
0.5%
top 36.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 1
Latest updateApr 23

Description

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statements to multiple scripts, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 78282.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5ibm/infosphere_guardium8.0, 8.01, 8.2+2
NVDibm/infosphere_guardium8.0, 8.01, 8.2+2

🔴Vulnerability Details

2
GHSA
GHSA-7vfp-rfvf-q9mj: IBM InfoSphere Guardium 82022-04-23
CVEList
CVE-2012-3336: IBM InfoSphere Guardium 82020-09-01
CVE-2012-3336 (HIGH CVSS 8.8) | IBM InfoSphere Guardium 8.0 | cvebase.io