7.2

CVE-2009-4331

Exploit

The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with incorrect file-permission and authorization settings, which has unknown impact and local attack vectors.

Data is provided by the National Vulnerability Database (NVD)
IbmDb2 Version9.5
IbmDb2 Version9.5 Updatefp1
IbmDb2 Version9.5 Updatefp2
IbmDb2 Version9.5 Updatefp2a
IbmDb2 Version9.5 Updatefp3
IbmDb2 Version9.5 Updatefp3a
IbmDb2 Version9.5 Updatefp3b
IbmDb2 Version9.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.242
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C