First published: Fri Jun 03 2022(Updated: )
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Information Steward | <=11.7 | |
SAP Information Steward | =11.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31768 has a high severity rating due to the potential for unauthorized access and manipulation of backend data.
To fix CVE-2022-31768, it is recommended to apply the latest security patches provided by IBM for InfoSphere Information Server version 11.7.
CVE-2022-31768 affects users of IBM InfoSphere Information Server version 11.7.
CVE-2022-31768 is classified as an SQL injection vulnerability, allowing attackers to interact maliciously with the database.
Due to CVE-2022-31768, an attacker could view, add, modify, or delete sensitive information stored in the backend database.