Unrated severityNVD Advisory· Published Aug 29, 2012· Updated Apr 29, 2026
CVE-2012-3309
CVE-2012-3309
Description
Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
Affected products
3cpe:2.3:a:ibm:infosphere_guardium:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:infosphere_guardium:*:*:*:*:*:*:*:*range: <=8.2
- cpe:2.3:a:ibm:infosphere_guardium:8.00:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:infosphere_guardium:8.01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.