SQL Injection Vulnerability in IBM Marketing Platform
CVE-2016-0224

9.8CRITICAL

Key Information:

Vendor
IBM
Vendor
CVE Published:
28 June 2016

Summary

A SQL injection vulnerability exists in IBM Marketing Platform versions 8.5.x, 8.6.x, and all 9.x versions prior to 9.1.2.2. This flaw enables remote attackers to exploit the application and execute arbitrary SQL commands through various unspecified vectors. Organizations using these vulnerable versions must apply immediate patches to secure their systems and protect sensitive data from unauthorized access.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.