Directory traversal vulnerability in the UTL_FILE module in IBM DB2ID: oval:org.secpod.oval:def:7151 | Date: (C)2012-10-02 (M)2022-10-10 |
Class: VULNERABILITY | Family: windows |
The host is installed with IBM DB2 V10.1 and is prone to directory traversal vulnerability. A flaw is present in the application, which fails to handle the UTL_FILE module. Successful exploitation allows remote authenticated users to modify, delete, or read arbitrary files via a pathname in the file field.
Platform: |
Microsoft Windows 7 |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Vista |
Microsoft Windows XP |