CVE-2013-6302

CWE-89SQL Injection3 documents3 sources
Severity
6.5MEDIUM
EPSS
0.2%
top 55.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 5
Latest updateMay 17

Description

SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.0, ACSWeb in Algo Security Access Control Management 4.7.0 through 4.9.0, and ACSWeb in AlgoWebApps 5.0.0, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2013-6331.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 8.0 | Impact: 6.4

Affected Packages1 packages

NVDibm/algo_one6 versions+5

🔴Vulnerability Details

2
GHSA
GHSA-3345-56f6-jwpr: SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 42022-05-17
CVEList
CVE-2013-6302: SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 42014-03-05