// For flags

CVE-2003-1052

IBM DB2 - Shared Library Injection

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

IBM DB2 7.1 and 8.1 allow the bin user to gain root privileges by modifying the shared libraries that are used in setuid root programs.

IBM DB2 7.1 y 8.1 permite al usuario bin ganar privilegios de root modificando las librerías compartidas usadas por programas con setuid de root.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2003-08-05 First Exploit
  • 2004-08-19 CVE Reserved
  • 2004-08-20 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-08 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Ibm
Search vendor "Ibm"
Db2
Search vendor "Ibm" for product "Db2"
9.0
Search vendor "Ibm" for product "Db2" and version "9.0"
-
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
6.0
Search vendor "Ibm" for product "Db2 Universal Database" and version "6.0"
-
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
7.0
Search vendor "Ibm" for product "Db2 Universal Database" and version "7.0"
linux
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
7.1
Search vendor "Ibm" for product "Db2 Universal Database" and version "7.1"
linux
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
7.2
Search vendor "Ibm" for product "Db2 Universal Database" and version "7.2"
linux
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
8.0
Search vendor "Ibm" for product "Db2 Universal Database" and version "8.0"
linux
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
8.1
Search vendor "Ibm" for product "Db2 Universal Database" and version "8.1"
aix
Affected
Ibm
Search vendor "Ibm"
Db2 Universal Database
Search vendor "Ibm" for product "Db2 Universal Database"
8.2
Search vendor "Ibm" for product "Db2 Universal Database" and version "8.2"
windows
Affected