IBM Security Guardium Database Activity Monitor uses a hard-coded password for the which is available to the administrator or a user with root access. This password could be used across other GRUB systems.
CVE(s): CVE-2016-0235
Affected product(s) and affected version(s):
IBM Security Guardium Database Activity Monitor V10
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1VK7Bki
X-Force Database: http://ift.tt/1ZuDBrQ
from IBM Product Security Incident Response Team http://ift.tt/1VK7EwD
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.