Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Cúram Social Program Management is vulnerable to a SQL injection attack


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM Cúram Social Program Management is vulnerable to a SQL Injection attack. The attacker must already be authenticated and have access to the console. CVE(s): CVE-2015-5023 Affected product(s) and affected version(s): IBM Cúram Social Program Management 6.1 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21967851 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_c%25C3%25BAram_social_program_management_is_vulnerable_to_a_sql_injection_attack?lang=en_us

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-11-12

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT