CVE-2013-6331: SQL Injection
SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.0, ACSWeb in Algo Security Access Control Management 4.7.0 through 4.9.0, and ACSWeb in AlgoWebApps 5.0.0, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2013-6302.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6331?
CVE-2013-6331 is classified as a medium-severity vulnerability due to its potential for executing arbitrary SQL commands.
What versions are affected by CVE-2013-6331?
CVE-2013-6331 affects IBM Algo One versions 4.7.0 through 5.0.0, including various intermediate versions.
How do I fix CVE-2013-6331?
To fix CVE-2013-6331, it is recommended to update to a patched version of IBM Algo One that addresses this SQL injection vulnerability.
Who can exploit CVE-2013-6331?
CVE-2013-6331 can be exploited by remote authenticated users with access to the affected IBM Algo One systems.
What type of vulnerability is CVE-2013-6331?
CVE-2013-6331 is an SQL injection vulnerability that allows execution of arbitrary SQL commands.