Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2021-29868

Disclosure Date: October 26, 2021 (last updated February 23, 2025)
IBM i2 iBase 8.9.13 and 9.0.0 could allow a local attacker to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 206213.
Attacker Value
Unknown

CVE-2020-4623

Disclosure Date: July 23, 2021 (last updated February 23, 2025)
IBM i2 iBase 8.9.13 could allow a local authenticated attacker to execute arbitrary code on the system, caused by a DLL search order hijacking flaw. By using a specially-crafted .DLL file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 184984.
Attacker Value
Unknown

CVE-2020-4588

Disclosure Date: October 29, 2020 (last updated February 22, 2025)
IBM i2 iBase 8.9.13 could allow an attacker to upload arbitrary executable files which, when executed by an unsuspecting victim could result in code execution. IBM X-Force ID: 184579.
Attacker Value
Unknown

CVE-2020-4584

Disclosure Date: October 29, 2020 (last updated February 22, 2025)
IBM i2 iBase 8.9.13 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184574.