6.8
CVSSv2

CVE-2012-3309

Published: 29/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and previous versions, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote malicious users to hijack the authentication of administrators for requests that create administrative accounts.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm infosphere guardium

ibm infosphere guardium 8.01

ibm infosphere guardium 8.00