4.4

CVE-2007-1228

IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmDb2 Version8.2
   UnixUnix
IbmDb2 Version8.2 Updatefp1
   UnixUnix
IbmDb2 Version8.2 Updatefp2
   UnixUnix
IbmDb2 Version8.2 Updatefp3
   UnixUnix
IbmDb2 Version8.2 Updatefp4
   UnixUnix
IbmDb2 Version8.2 Updatefp5
   UnixUnix
IbmDb2 Version8.2 Updatefp6
   UnixUnix
IbmDb2 Version9.0
   UnixUnix
IbmDb2 Version9.0 Updatefp1
   UnixUnix
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.175
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.4 2.7 6.9
AV:L/AC:M/Au:S/C:C/I:N/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.