SQL Injection Vulnerability in IBM Concert Software
CVE-2026-3627
9.1CRITICAL
What is CVE-2026-3627?
IBM Concert versions 1.0.0 through 2.3.1 are susceptible to SQL injection attacks. This vulnerability allows remote attackers to execute malicious SQL statements, resulting in unauthorized access to the database. Attackers may exploit this flaw to view, insert, modify, or delete sensitive data stored within the back-end database, posing significant risks to the integrity and confidentiality of the information managed by the software.
Affected Version(s)
Concert 1.0.0 <= 2.3.1