CVE-2014-0966
SQL injection vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x before 11.0-FP5 and InfoSphere Master Data Management Server for Product Information Management 9.x through 11.x before 11.3-IF2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0035 (0.3%)
Percentil: 57.3%
EPSS: 2026-05-06
Afecta
ibm:infosphere_master_data_managementibm:infosphere_master_data_management_server_for_product_information_managementDescripción técnica
SQL injection vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x before 11.0-FP5 and InfoSphere Master Data Management Server for Product Information Management 9.x through 11.x before 11.3-IF2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Publicada: 17/8/2014, 23:55:06
Última modificación: 6/5/2026, 22:30:45
Referencias
- http://secunia.com/advisories/60679
- http://secunia.com/advisories/60693
- http://secunia.com/advisories/60695
- http://www-01.ibm.com/support/docview.wss?uid=swg21681651
- https://exchange.xforce.ibmcloud.com/vulnerabilities/92880
- http://secunia.com/advisories/60679
- http://secunia.com/advisories/60693
- http://secunia.com/advisories/60695