[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Security bypass vulnerability in IBM DB2 that reads arbitrary XML files (Linux)

ID: oval:org.secpod.oval:def:6525Date: (C)2012-08-07   (M)2021-09-12
Class: VULNERABILITYFamily: unix




The host is installed with IBM DB2 9.1 before FP12 or 9.5 through FP9 or 9.7 through FP6 or 9.8 through FP5 or 10.1 and is prone to security bypass vulnerability. A flaw is present in the application, which fails to handle the GET_WRAP_CFG_C or GET_WRAP_CFG_C2 stored procedure. Successful exploitation allows attackers to read arbitrary XML files.

Platform:
Linux
Product:
IBM DB2
Reference:
CVE-2012-2196
CVE    1
CVE-2012-2196
CPE    44
cpe:/a:ibm:db2:9.8.0.4
cpe:/a:ibm:db2:9.8.0.3
cpe:/a:ibm:db2:9.8
cpe:/a:ibm:db2:9.7
...

© SecPod Technologies