First published: Tue May 22 2018(Updated: )
A vulnerability in DB Manager version 3.0.1.0 and previous and PerformA version 3.0.0.0 and previous allows an authorized user with access to a privileged account on a BD Kiestra system (Kiestra TLA, Kiestra WCA, and InoqulA+ specimen processor) to issue SQL commands, which may result in data corruption.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Bd Database Manager | =3.0.1.0 | |
Bd Performa | <=3.0.0.0 | |
Bd Reada | <=1.1.0.2 | |
Bd Inoqula\+ | ||
Bd Kiestra Tla | ||
Bd Kiestra Wca |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity level of CVE-2018-10593 is medium with a score of 5.6.
DB Manager version 3.0.1.0 and previous, and PerformA version 3.0.0.0 and previous are affected by CVE-2018-10593.
An authorized user with access to a privileged account can issue SQL commands, which may result in data corruption or other unauthorized actions.
No, the InoqulA+, Kiestra TLA, and Kiestra WCA systems are not vulnerable to CVE-2018-10593.
To fix CVE-2018-10593, it is recommended to update DB Manager and PerformA to the latest versions provided by BD.