Page 8 of 40 results (0.006 seconds)

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 0

IBM DB2 Universal Database 7 before FixPak 12 creates certain DMS directories with insecure permissions (777), which allows local users to modify or delete certain DB2 files. IBM DB2 Universal Database 7 antes de FixPak 12 crea ciertos directorios DMS con permisos inseguros (777), lo que permite a usuarios locales modificar o borrar ciertos ficheros DB2. • http://www-1.ibm.com/support/search.wss?rs=0&q=IY44841&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IY44842&apar=only http://www.securityfocus.com/bid/9243 https://exchange.xforce.ibmcloud.com/vulnerabilities/14030 •

CVSS: 7.2EPSS: 0%CPEs: 5EXPL: 0

Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long username that is read from a file descriptor argument. Desbordamiento de búfer en sqllib/security/db2ckpw de IBM DB2 Universal Database 6.0 y 7.0 permite a usuarios locales ejecutar código de su elección mediante un nombre de usuario largo que se lee de un argumento de descriptor de fichero. • http://www.iss.net/security_center/static/9078.php http://www.securityfocus.com/bid/4817 http://www.securitytracker.com/alerts/2002/May/1004352.html •

CVSS: 4.6EPSS: 0%CPEs: 2EXPL: 1

IBM DB2 7.2 before FixPak 10a, and earlier versions including 7.1, allows local users to overwrite arbitrary files and gain privileges via a symlink attack on (1) db2job and (2) db2job2. IBM DB2 anteriores a FixPak 10a, y versiones anteriores incluyendo la 7.1, permite a usuarios locales sobreescribir ficheros arbitrarios y ganar privilegios mediante un ataque de enlaces simbólicos sobre d2job o db2job2. • https://www.exploit-db.com/exploits/22988 ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/db2aixv7/FP10a_U495172/FixpakReadme.txt http://marc.info/?l=bugtraq&m=106010332721672&w=2 •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 0

The DB2 Discovery Service for IBM DB2 before FixPak 10a allows remote attackers to cause a denial of service (crash) via a long packet to UDP port 523. El servicio de descubierta DB2 de IBM DB2 anteriores a FixPak 10a permite a atacantes remotos causar una denegación de servicio (caída) mediante una paquete largo al puerto UDP 523. • http://marc.info/?l=bugtraq&m=106399616919636&w=2 http://www-1.ibm.com/support/search.wss?rs=0&q=IY47686&apar=only •

CVSS: 2.1EPSS: 0%CPEs: 2EXPL: 3

IBM DB2 Universal Database version 6.1 allows users to cause a denial of service via a malformed query. • https://www.exploit-db.com/exploits/20470 http://www.securityfocus.com/archive/1/149207 http://www.securityfocus.com/bid/2067 https://exchange.xforce.ibmcloud.com/vulnerabilities/5664 •