CVE-2018-1368

IBM Security Guardium Database Activity Monitor 9.0, 9.1, and 9.5 could allow a local user with low privileges to view report pages and perform some actions that only an admin should be performing, so there is risk that someone not authorized can change things that they are not suppose to. IBM X-Force ID: 137765.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:security_guardium_database_activity_monitor:9.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:9.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_guardium_database_activity_monitor:9.5:*:*:*:*:*:*:*

History

21 Nov 2024, 03:59

Type Values Removed Values Added
References () http://www.ibm.com/support/docview.wss?uid=swg22013302 - Patch, Vendor Advisory () http://www.ibm.com/support/docview.wss?uid=swg22013302 - Patch, Vendor Advisory
References () http://www.securitytracker.com/id/1040349 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1040349 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/137765 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/137765 - VDB Entry, Vendor Advisory

Information

Published : 2018-02-09 17:29

Updated : 2024-11-21 03:59


NVD link : CVE-2018-1368

Mitre link : CVE-2018-1368

CVE.ORG link : CVE-2018-1368


JSON object : View

Products Affected

ibm

  • security_guardium_database_activity_monitor
CWE
CWE-269

Improper Privilege Management