First published: Sun Jan 03 2016(Updated: )
SQL injection vulnerability in IBM Curam Social Program Management 6.1 before 6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Curam Social Program Management | =6.0 | |
IBM Curam Social Program Management | =6.0.1 | |
IBM Curam Social Program Management | =6.0.2 | |
IBM Curam Social Program Management | =6.0.3 | |
IBM Curam Social Program Management | =6.0.4 | |
IBM Curam Social Program Management | =6.0.5 | |
IBM Curam Social Program Management | =6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5023 is classified as a critical severity vulnerability that allows SQL injection.
To fix CVE-2015-5023, you should upgrade to IBM Curam Social Program Management version 6.1.1 or later.
CVE-2015-5023 affects authenticated users of IBM Curam Social Program Management versions 6.0 to 6.1.
CVE-2015-5023 is an SQL injection vulnerability that allows execution of arbitrary SQL commands.
Yes, CVE-2015-5023 can be exploited remotely by authenticated users.