IBM Security Guardium Database Activity Monitor 9.0, 9.1, and 9.5 could allow a local user with low privileges to view report pages and perform some actions that only an admin should be performing, so there is risk that someone not authorized can change things that they are not suppose to. IBM X-Force ID: 137765.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/137765 | VDB Entry Vendor Advisory |
http://www.ibm.com/support/docview.wss?uid=swg22013302 | Patch Vendor Advisory |
http://www.securitytracker.com/id/1040349 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-02-09 09:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-1368
Mitre link : CVE-2018-1368
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
ibm
- security_guardium_database_activity_monitor