CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9223 | CVE-2004-0795 | Candidate | DB2 8.1 remote command server (DB2RCMD.EXE) executes the db2rcmdc.exe program as the db2admin administrator, which allows local users to gain privileges via the DB2REMOTECMD named pipe. | Assigned (20040819) | None (candidate not yet proposed) | View | |
5967 | CVE-2002-1583 | Candidate | Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long username that is read from a file descriptor argument. | Assigned (20040819) | None (candidate not yet proposed) | View | |
7873 | CVE-2003-1049 | Candidate | IBM DB2 Universal Database 7 before FixPak 12 creates certain DMS directories with insecure permissions (777), which allows local users to modify or delete certain DB2 files. | Assigned (20040819) | None (candidate not yet proposed) | View | |
7874 | CVE-2003-1050 | Candidate | Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long command line arguments to (1) db2start, (2) db2stop, or (3) db2govd. | Assigned (20040819) | None (candidate not yet proposed) | View | |
7875 | CVE-2003-1051 | Candidate | Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via certain command line arguments to (1) db2start, (2) db2stop, or (3) db2govd. | Assigned (20040819) | None (candidate not yet proposed) | View |
Page 20010 of 20943, showing 5 records out of 104715 total, starting on record 100046, ending on 100050