[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Directory traversal vulnerability in the SQLJ.DB2_INSTALL_JAR stored procedure in IBM DB2 (Linux)

ID: oval:org.secpod.oval:def:6526Date: (C)2012-08-07   (M)2021-09-12
Class: VULNERABILITYFamily: unix




The host is installed with IBM DB2 9.1 before FP12 or 9.5 through FP9 or 9.7 through FP6 or 9.8 through FP5 or 10.1 and is prone to directory traversal vulnerability. A flaw is present in the application, which fails to handle SQLJ.DB2_INSTALL_JAR stored procedure. Successful exploitation allows remote attackers to replace JAR files via unspecified vectors.

Platform:
Linux
Product:
IBM DB2
Reference:
CVE-2012-2194
CVE    1
CVE-2012-2194
CPE    44
cpe:/a:ibm:db2:9.8.0.4
cpe:/a:ibm:db2:9.8.0.3
cpe:/a:ibm:db2:9.8
cpe:/a:ibm:db2:9.7
...

© SecPod Technologies