All CVEs — page 168 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
This vulnerability allows a remote attacker to bypass security restrictions by exploiting a cross-site request forgery (CSRF) flaw in IBM Guardium Data Protection 12.2, potentially leading to unauthorized access or data manipulation.
This flaw allows a remote attacker to execute arbitrary SQL commands, leading to potential data breaches or system compromise.
The flaw is a missing authentication vulnerability in IBM Guardium Data Protection 12.2's LoadBalancerServlet, allowing unauthenticated users to perform privileged operations, which could lead to unauthorized actions and impact system integrity and availability.
This flaw allows a remote attacker to bypass security restrictions by exploiting the ChangeTrackerServlet due to missing authentication, posing a critical risk to the system's integrity.
This flaw allows a remote authenticated attacker to execute arbitrary code due to improper input handling, posing a significant security risk.
This flaw allows a remote attacker with valid credentials to execute arbitrary SQL commands, leading to potential data breaches or system compromise.
A remote attacker with authentication could execute arbitrary code due to improper input handling in IBM Guardium Data Protection 12.2, posing a significant security risk.
The flaw allows a remote authenticated attacker to execute arbitrary SQL commands, posing a significant risk to database security.
The flaw is a hardcoded credentials vulnerability in IBM Guardium Data Protection 12.2, allowing low-privileged authenticated users to recover sensitive secrets, potentially leading to unauthorized access and data compromise.
A remote attacker with valid credentials could execute arbitrary code, leading to full system compromise.
IBM Guardium Data Protection 12.2 allows unauthenticated attackers to bypass IP-based access controls and access the management interface, leading to unauthorized access.
This flaw allows a remote authenticated attacker to execute arbitrary commands on the system due to improper handling of OS commands, posing a significant security risk.
The flaw allows a remote authenticated attacker to gain elevated privileges via the REST API due to missing authorization checks, posing a significant security risk.
This flaw allows a remote authenticated attacker to execute arbitrary code due to improper input handling, posing a critical risk.
The flaw allows unauthenticated attackers to exploit insecure deserialization and reflective method dispatch, potentially leading to code execution on the IBM Guardium appliance.