IBM Big SQL on IBM Cloud Pak for Data 7.1.0, 7.1.1, 7.2.0, and 7.2.3 could allow an authenticated user with appropriate permissions to obtain sensitive information by bypassing data masking rules using a CREATE TABLE SELECT statement. IBM X-Force ID: 220480.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/220480 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6563021 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2022-03-11T00:00:00
Updated: 2022-03-14T17:00:25
Reserved: 2022-01-03T00:00:00
Link: CVE-2022-22353
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-03-14T17:15:07.993
Modified: 2022-03-22T14:40:36.893
Link: CVE-2022-22353
JSON object: View
Redhat Information
No data.
CWE