Lucene search

K
cveMitreCVE-2007-1086
HistoryFeb 23, 2007 - 10:28 p.m.

CVE-2007-1086

2007-02-2322:28:00
mitre
web.nvd.nist.gov
31
cve-2007-1086
ibm db2
security vulnerability
local users
arbitrary files
unsafe file access
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

10.1%

Unspecified binaries in IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 allow local users to create or modify arbitrary files via unspecified environment variables related to “unsafe file access.”

Affected configurations

Nvd
Node
hphp-ux
OR
ibmaix
OR
linuxlinux_kernelMatch2.6.18.0
OR
linuxlinux_kernelMatch2.6.18.1
OR
linuxlinux_kernelMatch2.6.18.2
OR
linuxlinux_kernelMatch2.6.18.3
OR
linuxlinux_kernelMatch2.6.18.4
OR
linuxlinux_kernelMatch2.6.18.5
OR
linuxlinux_kernelMatch2.6.18.6
OR
linuxlinux_kernelMatch2.6.18.7
OR
linuxlinux_kernelMatch2.6.19
OR
linuxlinux_kernelMatch2.6.19.1
OR
linuxlinux_kernelMatch2.6.19.2
OR
linuxlinux_kernelMatch2.6.19.3
OR
linuxlinux_kernelMatch2.6.19.4
OR
linuxlinux_kernelMatch2.6.20
OR
linuxlinux_kernelMatch2.6.20.1
OR
microsoftwindows_xp
OR
sunsolaris
AND
ibmdb2_universal_databaseMatch8.0linux
OR
ibmdb2_universal_databaseMatch8.1aix
OR
ibmdb2_universal_databaseMatch8.1.4
OR
ibmdb2_universal_databaseMatch8.1.5
OR
ibmdb2_universal_databaseMatch8.1.6
OR
ibmdb2_universal_databaseMatch8.1.6c
OR
ibmdb2_universal_databaseMatch8.1.7
OR
ibmdb2_universal_databaseMatch8.1.7b
OR
ibmdb2_universal_databaseMatch8.1.8
OR
ibmdb2_universal_databaseMatch8.1.8a
OR
ibmdb2_universal_databaseMatch8.1.9
OR
ibmdb2_universal_databaseMatch8.1.9a
OR
ibmdb2_universal_databaseMatch8.10
OR
ibmdb2_universal_databaseMatch8.12
OR
ibmdb2_universal_databaseMatch9.1hp_ux
VendorProductVersionCPE
hphp-ux*cpe:2.3:o:hp:hp-ux:*:*:*:*:*:*:*:*
ibmaix*cpe:2.3:o:ibm:aix:*:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.0cpe:2.3:o:linux:linux_kernel:2.6.18.0:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.1cpe:2.3:o:linux:linux_kernel:2.6.18.1:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.2cpe:2.3:o:linux:linux_kernel:2.6.18.2:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.3cpe:2.3:o:linux:linux_kernel:2.6.18.3:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.4cpe:2.3:o:linux:linux_kernel:2.6.18.4:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.5cpe:2.3:o:linux:linux_kernel:2.6.18.5:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.6cpe:2.3:o:linux:linux_kernel:2.6.18.6:*:*:*:*:*:*:*
linuxlinux_kernel2.6.18.7cpe:2.3:o:linux:linux_kernel:2.6.18.7:*:*:*:*:*:*:*
Rows per page:
1-10 of 341

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

10.1%