CVE-2025-36365
- EPSS 0.01%
- Veröffentlicht 30.01.2026 21:27:54
- Zuletzt bearbeitet 04.02.2026 16:34:21
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 under specific configuration of cataloged remote storage aliases could allow an authenticated user to execute unauthorized commands due to an author...
CVE-2025-36366
- EPSS 0.04%
- Veröffentlicht 30.01.2026 21:27:51
- Zuletzt bearbeitet 04.02.2026 16:34:21
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service by executing a query that invokes the JSON_Object scalar function, which may trigger an unhandled exception leading to abnormal server t...
CVE-2025-36424
- EPSS 0.04%
- Veröffentlicht 30.01.2026 21:27:34
- Zuletzt bearbeitet 04.02.2026 16:34:21
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow a local user to cause a denial of service due to improper neutralization of special elements in data query logic.
CVE-2025-2518
- EPSS 0.04%
- Veröffentlicht 29.05.2025 19:14:07
- Zuletzt bearbeitet 09.06.2025 18:59:23
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query.
CVE-2025-1000
- EPSS 0.06%
- Veröffentlicht 05.05.2025 20:55:46
- Zuletzt bearbeitet 03.11.2025 20:17:06
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service when connecting to a z/OS database due to improper handling of automati...