Vulnerabilities > IBM > Infosphere Guardium > 7.00

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2012-3341 Cross-site Scripting vulnerability in IBM Infosphere Guardium
IBM InfoSphere Guardium 7.0, 8.0, 8.01, and 8.2 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input.
network
ibm CWE-79
3.5
2012-08-29 CVE-2012-3312 Cryptographic Issues vulnerability in IBM Infosphere Guardium
The datasource definition editor in IBM InfoSphere Guardium 8.2 and earlier, when the save-password setting is enabled, transmits cleartext database credentials, which allows remote attackers to obtain sensitive information by sniffing the network.
network
low complexity
ibm CWE-310
5.0
2012-08-29 CVE-2012-3309 Cross-Site Request Forgery (CSRF) vulnerability in IBM Infosphere Guardium
Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
network
ibm CWE-352
6.8