CVE-2014-6080: SQL Injection
SQL injection vulnerability in IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6080?
CVE-2014-6080 has a high severity rating due to its SQL injection capabilities.
How do I fix CVE-2014-6080?
To fix CVE-2014-6080, upgrade to IBM Security Access Manager for Mobile version 8.0.1 or Security Access Manager for Web version 7.0.0 FP10 or later.
Which IBM products are affected by CVE-2014-6080?
CVE-2014-6080 affects IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1.
What type of attack does CVE-2014-6080 enable?
CVE-2014-6080 enables remote authenticated users to execute arbitrary SQL commands.
Can CVE-2014-6080 be exploited remotely?
Yes, CVE-2014-6080 can be exploited remotely by authenticated users.