Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in IBM InfoSphere Guardium Database Activity Monitoring (CVE-2010-2273)


System information

   
Affected software IBM

Description

Guardium Database Activity Monitoring is affected by multiple cross-site scripting (XSS) vulnerabilities in Dojo which could allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CVE(s): CVE-2010-2273 Affected product(s) and affected version(s): Versions 8.2 of IBM InfoSphere Guardium Database Activity Monitoring. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_ibm_infosphere_guardium_database_activity_monitoring_cve_2010_2273?lang=en_us

Standar resources

Property Value
CVE CVE-2010-2273 and CVE-2014-0114.

Version history

Version Comments Date
1.0 Advisory issued 2014-05-25
Ministerio de Defensa
CNI
CCN
CCN-CERT