CVE-2020-4921: SQL Injection
IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191398.
Other sources
IBM Security Guardium is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-4921.
What is the severity of CVE-2020-4921?
The severity of CVE-2020-4921 is high, with a CVSS severity value of 8.8.
Which version of IBM Security Guardium is affected by CVE-2020-4921?
IBM Security Guardium versions 10.5, 10.6, 11.0, 11.1, 11.2, and 11.3 are affected by CVE-2020-4921.
How does CVE-2020-4921 impact IBM Security Guardium?
CVE-2020-4921 allows remote attackers to execute SQL injection attacks on IBM Security Guardium, potentially gaining unauthorized access to or manipulating the back-end database.
Are there any references or additional resources for CVE-2020-4921?
Yes, you can find more information about CVE-2020-4921 on the IBM X-Force website (ID: 191398) and the IBM Support website.