{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aibmconcert2.3.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ibm:concert:1.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:concert:2.3.1:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.1,"id":"CVE-2026-3627"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Concert (1.0.0 through 2.3.1)"],"_cs_severities":["critical"],"_cs_tags":["cve","sql-injection","web-security"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM Concert versions 1.0.0 through 2.3.1 contain a critical SQL injection vulnerability identified as CVE-2026-3627. This vulnerability arises from improper neutralization of special elements used in an SQL command within the application. A remote, unauthenticated attacker can exploit this flaw by sending specially crafted SQL statements to the application. Successful exploitation grants the attacker the ability to interact directly with the back-end database, potentially leading to unauthorized data exfiltration, modification of application records, or deletion of sensitive database content. Given the severity of this vulnerability, which carries a CVSS 3.1 base score of 9.1, it is essential for organizations using IBM Concert to assess their exposure and implement updates immediately to prevent unauthorized database access.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a high risk to the confidentiality, integrity, and availability of data stored within the IBM Concert back-end database. Unauthorized access could result in the total compromise of stored business data. If exploited, an attacker could extract sensitive information, inject malicious data into the application, or destroy existing records, leading to significant operational disruption and data loss.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the identification of all internet-facing instances of IBM Concert versions 1.0.0 through 2.3.1 within the environment. Apply the latest security patches provided by IBM to remediate CVE-2026-3627 as soon as they become available. Monitor web server logs for HTTP requests containing suspicious SQL syntax (e.g., OR 1=1, UNION SELECT, SLEEP) targeting the Concert API endpoints.\u003c/p\u003e\n","date_modified":"2026-08-28T23:34:59Z","date_published":"2026-08-28T23:34:59Z","id":"https://feed.craftedsignal.io/briefs/2026-08-cve-2026-3627/","summary":"IBM Concert versions 1.0.0 through 2.3.1 are vulnerable to a remote SQL injection attack, allowing unauthenticated attackers to query, modify, or delete data in the back-end database.","title":"SQL Injection Vulnerability in IBM Concert","url":"https://feed.craftedsignal.io/briefs/2026-08-cve-2026-3627/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:ibm:concert:2.3.1:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}