Required CVE Record Information
Description
IBM Security Guardium Big Data Intelligence (SonarG) 4.0 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 161209.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
4.3 | MEDIUM | 3.0 | CVSS:3.0/AV:N/C:N/UI:N/A:N/AC:L/S:U/PR:L/I:L/RC:C/RL:O/E:U |
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- https://www.ibm.com/support/pages/node/1096906 x_transferred
- exchange.xforce.ibmcloud.com: ibm-guardium-cve20194329-sec-bypass (161209) vdb-entryx_transferred