Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm security guardium 10.0 vulnerabilities and exploits
(subscribe to this query)
7.1
CVSSv3
CVE-2017-1254
IBM Security Guardium 10.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume memory resources. IBM X-Force ID: 124634.
Ibm Security Guardium 10.0.1
Ibm Security Guardium 10.1
Ibm Security Guardium 10.1.2
Ibm Security Guardium 10.0
6.5
CVSSv3
CVE-2017-1258
IBM Security Guardium 10.0 and 10.1 does not perform an authentication check for a critical resource or functionality allowing anonymous users access to protected areas. IBM X-Force ID: 124685
Ibm Security Guardium 10.1.2
Ibm Security Guardium 10.0.1
Ibm Security Guardium 10.0
Ibm Security Guardium 10.1
7.4
CVSSv3
CVE-2017-1122
IBM Security Guardium 8.2, 9.0, and 10.0 contains a vulnerability that could allow a local attacker with CLI access to inject arbitrary commands which would be executed as root. IBM X-Force ID: 121174.
Ibm Security Guardium 9.5
Ibm Security Guardium 10.0
Ibm Security Guardium 10.0.1
Ibm Security Guardium 10.1
Ibm Security Guardium 9.0
Ibm Security Guardium 9.1
Ibm Security Guardium 8.2
Ibm Security Guardium 10.1.2
7.8
CVSSv3
CVE-2016-6065
IBM Security Guardium Database Activity Monitor appliance could allow a local user to inject commands that would be executed as root.
Ibm Security Guardium 10.1.2
Ibm Security Guardium 10.0
Ibm Security Guardium 10.0.1
Ibm Security Guardium 10.1
Ibm Security Guardium 9.1
Ibm Security Guardium 8.2
Ibm Security Guardium 9.0
Ibm Security Guardium 9.5
4.3
CVSSv3
CVE-2016-0242
IBM Security Guardium 10.x up to and including 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.
Ibm Security Guardium 10.01
Ibm Security Guardium 10.0
Ibm Security Guardium 10.1
3.7
CVSSv3
CVE-2016-0248
IBM Security Guardium 9.0 before p700 and 10.0 before p100 allows man-in-the-middle malicious users to obtain sensitive query-string information from SSL sessions via unspecified vectors.
Ibm Security Guardium 10.0
Ibm Security Guardium 9.0
6.1
CVSSv3
CVE-2017-1256
IBM Security Guardium 10.0, 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID...
Ibm Security Guardium 10.1
Ibm Security Guardium 10.0
8.8
CVSSv3
CVE-2016-0239
IBM Security Guardium Database Activity Monitor 9.x up to and including 9.5 before p700 and 10.x up to and including 10.0.1 before p100 allows remote authenticated users to make HTTP requests with administrator privileges via unspecified vectors.
Ibm Security Guardium Database Activity Monitor 10.0.1
Ibm Security Guardium Database Activity Monitor 9.0
Ibm Security Guardium Database Activity Monitor 9.1
Ibm Security Guardium Database Activity Monitor 9.5
Ibm Security Guardium Database Activity Monitor 10.0
3.7
CVSSv3
CVE-2016-0240
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x up to and including 9.5 before p700, and 10.x up to and including 10.1 before p100 does not enable the HSTS protection mechanism, which makes it easier for remote malicious users to obtain sensitive information ...
Ibm Security Guardium Database Activity Monitor 9.1
Ibm Security Guardium Database Activity Monitor 9.0
Ibm Security Guardium Database Activity Monitor 8.2
Ibm Security Guardium Database Activity Monitor 10.1
Ibm Security Guardium Database Activity Monitor 10.01
Ibm Security Guardium Database Activity Monitor 10.0
Ibm Security Guardium Database Activity Monitor 9.5
8.8
CVSSv3
CVE-2016-0241
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x up to and including 9.5 before p700, and 10.x up to and including 10.1 before p100 allows remote authenticated users to spoof administrator accounts by sending a modified login request over HTTP.
Ibm Security Guardium Database Activity Monitor 9.0
Ibm Security Guardium Database Activity Monitor 9.1
Ibm Security Guardium Database Activity Monitor 8.2
Ibm Security Guardium Database Activity Monitor 10.1
Ibm Security Guardium Database Activity Monitor 10.01
Ibm Security Guardium Database Activity Monitor 9.5
Ibm Security Guardium Database Activity Monitor 10.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
HTML injection
CVE-2024-35894
SQL
CVE-2024-5105
CVE-2014-100005
CVE-2024-35895
unauthorized
CVE-2024-22120
CVE-2024-35890
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »