Ibm

Soliddb

13 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.7%
  • Published 09.09.2013 01:55:06
  • Last modified 11.04.2025 00:51:21

A SQL stored procedure in the Universal Cache component in IBM solidDB 6.0.x before 6.0.1070, 6.3.x before 6.3.0.56, 6.5.x before 6.5.0.12, and 7.0.x before 7.0.0.4 allows remote authenticated users to cause a denial of service (uninitialized-memory ...

  • EPSS 1.18%
  • Published 21.02.2012 13:31:56
  • Last modified 11.04.2025 00:51:21

The server in IBM solidDB 6.5 before FP9 and 7.0 before FP1 allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a ROWNUM condition involving a subquery.

  • EPSS 7.49%
  • Published 21.02.2012 13:31:56
  • Last modified 11.04.2025 00:51:21

The server in IBM solidDB 6.5 before Interim Fix 6 does not properly initialize data structures, which allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a redundant WHERE condition.

  • EPSS 1.97%
  • Published 05.05.2011 02:39:46
  • Last modified 11.04.2025 00:51:21

IBM solidDB 4.5.x before 4.5.182, 6.0.x before 6.0.1069, 6.1.x and 6.3.x before 6.3 FP8 (aka 6.3.49), and 6.5.x before 6.5 FP4 (aka 6.5.0.4) does not properly handle the (1) rpc_test_svc_readwrite and (2) rpc_test_svc_done commands, which allows remo...

  • EPSS 0.66%
  • Published 05.04.2011 15:19:34
  • Last modified 11.04.2025 00:51:21

solid.exe in IBM solidDB before 4.5.181, 6.0.x before 6.0.1067, 6.1.x and 6.3.x before 6.3.47, and 6.5.x before 6.5.0.3 uses a password-hash length specified by the client, which allows remote attackers to bypass authentication via a short length val...

Exploit
  • EPSS 18.91%
  • Published 23.10.2010 20:39:05
  • Last modified 11.04.2025 00:51:21

Stack consumption vulnerability in solid.exe in IBM solidDB 6.5.0.3 and earlier allows remote attackers to cause a denial of service (memory consumption and daemon crash) by connecting to TCP port 1315 and sending a packet with many integer fields, w...

Exploit
  • EPSS 8.78%
  • Published 23.10.2010 20:39:05
  • Last modified 11.04.2025 00:51:21

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing a single integer field, which allows remote attackers to cause a denial of service (NULL pointer deref...

Exploit
  • EPSS 18.91%
  • Published 23.10.2010 20:39:05
  • Last modified 11.04.2025 00:51:21

solid.exe in IBM solidDB 6.5.0.3 and earlier does not properly perform a recursive call to a certain function upon receiving packet data containing many integer fields with two different values, which allows remote attackers to cause a denial of serv...

  • EPSS 8.46%
  • Published 22.07.2010 05:43:58
  • Last modified 11.04.2025 00:51:21

solid.exe in IBM solidDB before 6.5 FP2 allows remote attackers to execute arbitrary code via a long username field in the first handshake packet.

Exploit
  • EPSS 5.22%
  • Published 09.04.2008 19:05:00
  • Last modified 09.04.2025 00:30:58

Format string vulnerability in the logging function in IBM solidDB 06.00.1018 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the (1) user name, (2) peer name, and possibly unspecified other fields.