IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with root privileges via the search field.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21990372 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/93823 | |
http://www-01.ibm.com/support/docview.wss?uid=swg21990372 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/93823 |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21990372 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/93823 - |
Information
Published : 2016-10-21 17:59
Updated : 2024-11-21 02:41
NVD link : CVE-2016-0236
Mitre link : CVE-2016-0236
CVE.ORG link : CVE-2016-0236
JSON object : View
Products Affected
ibm
- security_guardium_database_activity_monitor
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')