
Name of the Vulnerable Software and Affected Versions: IBM Db2 Mirror for i versions 7.4 through 7.6 Description: The IBM Db2 Mirror for i GUI is susceptible to a cross-site WebSocket hijacking issue. An unauthenticated malicious actor can exploit this by sending a specially crafted request to intercept an existing WebSocket connection and remotely execute unauthorized operations. Recommendations: IBM Db2 Mirror for i version 7.4: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Db2 Mirror for i version 7.5: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Db2 Mirror for i version 7.6: At the moment, there is no information about a newer version that contains a fix for this…Read More
References
Back to Main