PT-2016-3665 · Ibm · Ibm Openpages Grc Platform

Jan Fry

·

Published

2016-01-01

·

Updated

2016-11-28

·

CVE-2015-5049

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM OpenPages GRC Platform versions 7.0 through 7.0.0.4 IF3 IBM OpenPages GRC Platform versions 7.1 through 7.1.0.1 IF5
Description The issue allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Recommendations For IBM OpenPages GRC Platform versions 7.0 through 7.0.0.4 IF3, update to version 7.0.0.4 IF3 or later. For IBM OpenPages GRC Platform versions 7.1 through 7.1.0.1 IF5, update to version 7.1.0.1 IF6 or later.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-5049

Affected Products

Ibm Openpages Grc Platform