Vulnerability Description
IBM Security Guardium Database Activity Monitor 9.0, 9.1, and 9.5 could allow a local user with low privileges to view report pages and perform some actions that only an admin should be performing, so there is risk that someone not authorized can change things that they are not suppose to. IBM X-Force ID: 137765.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Security Guardium Database Activity Monitor | 9.0 |
Related Weaknesses (CWE)
References
- http://www.ibm.com/support/docview.wss?uid=swg22013302PatchVendor Advisory
- http://www.securitytracker.com/id/1040349Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/137765VDB EntryVendor Advisory
- http://www.ibm.com/support/docview.wss?uid=swg22013302PatchVendor Advisory
- http://www.securitytracker.com/id/1040349Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/137765VDB EntryVendor Advisory
FAQ
What is CVE-2018-1368?
CVE-2018-1368 is a vulnerability with a CVSS score of 4.4 (MEDIUM). IBM Security Guardium Database Activity Monitor 9.0, 9.1, and 9.5 could allow a local user with low privileges to view report pages and perform some actions that only an admin should be performing, so...
How severe is CVE-2018-1368?
CVE-2018-1368 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-1368?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Security Guardium Database Activity Monitor.