CVE-2013-6311

IBM Marketing Platform 9.1 - Authenticated SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in IBM Marketing Platform 9.1 before FP2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/88561
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21676688

Scores

EPSS 0.0096
EPSS Percentile 57.9%

Details

CWE
CWE-89
Status published
Products (2)
ibm/marketing_platform 9.1.0.0
ibm/marketing_platform 9.1.0.1
Published Jun 28, 2014
Tracked Since Feb 18, 2026