IBM Engineering Lifecycle Optimization - Publishing
cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:*:*:*:*:*:*:*
- 7.0.3
- 7.0.2
A SQL injection vulnerability has been identified in IBM Engineering Lifecycle Optimization - Publishing versions 7.0.2 and 7.0.3. This vulnerability allows remote attackers to send specially crafted SQL statements that could be used to view, add, modify, or delete information in the back-end database.
Exploitation of this vulnerability allows for unauthorized access to database information, with the potential to view, modify, or delete records.
Users can upgrade to IBM Engineering Lifecycle Optimization - Publishing version 7.0.3 iFix010 or later, or version 7.0.2 iFix032 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.