4.3

CVE-2017-1520

IBM DB2 9.7, 10,1, 10.5, and 11.1 is vulnerable to an unauthorized command that allows the database to be activated when authentication type is CLIENT. IBM X-Force ID: 129830.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmDb2 Version9.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.6
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.8
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.9
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.9 Updatea
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.10
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version9.7.0.11
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.1.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.3 Updatea
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.6
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version10.5.0.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Version11.1.0.0
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.6
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.8
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.9
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.10
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version9.7.0.11
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.1.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.1
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.2
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.4
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.6
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version10.5.0.7
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmDb2 Connect Version11.1.0.0
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.39
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.7 2.2 1.4
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.