Show filters
375 Total Results
Displaying 21-30 of 375
Sort by:
Attacker Value
Unknown
CVE-2023-38729
Disclosure Date: April 03, 2024 (last updated February 01, 2025)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT.
0
Attacker Value
Unknown
CVE-2023-47141
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IIBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 270264.
0
Attacker Value
Unknown
CVE-2023-47747
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.1, 10.5, and 11.1 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 272646.
0
Attacker Value
Unknown
CVE-2023-47158
Disclosure Date: January 22, 2024 (last updated February 05, 2024)
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server)
10.5, 11.1 and 11.5
could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 270750.
0
Attacker Value
Unknown
CVE-2023-47152
Disclosure Date: January 22, 2024 (last updated September 27, 2024)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an insecure cryptographic algorithm and to information disclosure in stack trace under exceptional conditions.
0
Attacker Value
Unknown
CVE-2023-27859
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IBM Db2 10.1, 10.5, and 11.1 could allow a remote user to execute arbitrary code caused by installing like named jar files across multiple databases. A user could exploit this by installing a malicious jar file that overwrites the existing like named jar file in another database. IBM X-Force ID: 249205.
0
Attacker Value
Unknown
CVE-2023-50308
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 under certain circumstances could allow an authenticated user to the database to cause a denial of service when a statement is run on columnar tables. IBM X-Force ID: 273393.
0
Attacker Value
Unknown
CVE-2023-47746
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 272644.
0
Attacker Value
Unknown
CVE-2023-45193
Disclosure Date: January 22, 2024 (last updated January 25, 2024)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of service when a specially crafted cursor is used. IBM X-Force ID: 268759.
0
Attacker Value
Unknown
CVE-2023-47145
Disclosure Date: January 07, 2024 (last updated January 12, 2024)
IBM Db2 for Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow a local user to escalate their privileges to the SYSTEM user using the MSI repair functionality. IBM X-Force ID: 270402.
0