Vulnerabilities > IBM > Infosphere Guardium > 8.00

DATE CVE VULNERABILITY TITLE RISK
2013-02-27 CVE-2013-0490 Local Privilege Escalation vulnerability in IBM Infosphere Guardium 8.00
Unspecified vulnerability in IBM InfoSphere Guardium S-TAP 8.1 for DB2 on z/OS allows local users to gain privileges via unknown vectors.
local
low complexity
ibm
7.2
2012-08-29 CVE-2012-3312 Cryptographic Issues vulnerability in IBM Infosphere Guardium
The datasource definition editor in IBM InfoSphere Guardium 8.2 and earlier, when the save-password setting is enabled, transmits cleartext database credentials, which allows remote attackers to obtain sensitive information by sniffing the network.
network
low complexity
ibm CWE-310
5.0
2012-08-29 CVE-2012-3309 Cross-Site Request Forgery (CSRF) vulnerability in IBM Infosphere Guardium
Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
network
ibm CWE-352
6.8