Ibm

Db2

355 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 12.08.2026 20:47:06
  • Zuletzt bearbeitet 17.08.2026 17:28:15

IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.

  • EPSS 0.11%
  • Veröffentlicht 30.07.2026 16:55:57
  • Zuletzt bearbeitet 05.08.2026 20:28:52

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flacc.

  • EPSS 0.11%
  • Veröffentlicht 30.07.2026 16:55:20
  • Zuletzt bearbeitet 05.08.2026 20:30:07

IBM Db2 12.1.0 through 12.1.4 federated server is vulnerable to a denial of service when running non fenced federated queries.

  • EPSS 0.1%
  • Veröffentlicht 17.07.2026 19:16:03
  • Zuletzt bearbeitet 24.07.2026 15:59:54

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a trap when compiling a specially crafted statements containing subqueries could lead to a denial of service.

  • EPSS 0.17%
  • Veröffentlicht 17.07.2026 17:25:53
  • Zuletzt bearbeitet 24.07.2026 16:46:46

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution when jdbc url is under user control.

  • EPSS 0.29%
  • Veröffentlicht 30.06.2026 20:17:28
  • Zuletzt bearbeitet 02.07.2026 18:36:32

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in the data query log...

  • EPSS 0.54%
  • Veröffentlicht 30.06.2026 20:17:26
  • Zuletzt bearbeitet 02.07.2026 16:46:53

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution due to improper pre-auth DRDA handshake handling.

  • EPSS 0.2%
  • Veröffentlicht 30.06.2026 20:17:25
  • Zuletzt bearbeitet 29.09.2026 19:10:00

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes Db2 Connect Server) could disclose sensitive information to an authenticated user from the monitoring and event tables.

  • EPSS 0.25%
  • Veröffentlicht 22.06.2026 14:31:21
  • Zuletzt bearbeitet 26.09.2026 23:10:00

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, and 5.3 could allow an authenticated user to bypass client-side validation and manipulate input data using man in the middle techniques.

  • EPSS 0.2%
  • Veröffentlicht 22.06.2026 13:18:42
  • Zuletzt bearbeitet 06.10.2026 22:10:00

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5.3 could allow a privileged user to perform operations and obtain sensitive information outside of their authority due to improper token validation.