First published: Mon Mar 12 2018(Updated: )
IBM Security Guardium Database Activity Monitor 10 allows local users to have unspecified impact by leveraging administrator access to a hardcoded password, related to use on GRUB systems. IBM X-Force ID: 110326.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium Database Activity Monitoring | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0235 has been classified with a moderate severity due to the potential for unauthorized access by local users.
To mitigate CVE-2016-0235, ensure that hardcoded passwords are changed and access controls are regularly reviewed.
IBM Security Guardium Database Activity Monitor version 10 is specifically affected by CVE-2016-0235.
CVE-2016-0235 is a local authentication vulnerability that can be exploited through administrator access.
IBM has provided guidance on addressing CVE-2016-0235, so check their support resources for specific patch details.