IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2...
Critical severity
Unreviewed
Published
Jan 11, 2023
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Jan 11, 2023
Published to the GitHub Advisory Database
Jan 11, 2023
Last updated
Feb 3, 2023
IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 236208.
References