Lucene search

K
cveMitreCVE-2010-4053
HistoryOct 23, 2010 - 8:39 p.m.

CVE-2010-4053

2010-10-2320:39:04
CWE-119
mitre
web.nvd.nist.gov
22
cve-2010-4053
stack-based buffer overflow
ibm informix dynamic server
remote code execution
nvd
security vulnerability

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.931

Percentile

99.1%

Stack-based buffer overflow in an unspecified logging function in oninit.exe in IBM Informix Dynamic Server (IDS) 11.10 before 11.10.xC2W2 and 11.50 before 11.50.xC1 allows remote authenticated users to execute arbitrary code via a crafted EXPLAIN directive, aka idsdb00154125 and idsdb00154243.

Affected configurations

Nvd
Node
ibminformix_dynamic_serverMatch11.10
OR
ibminformix_dynamic_serverMatch11.50
VendorProductVersionCPE
ibminformix_dynamic_server11.10cpe:2.3:a:ibm:informix_dynamic_server:11.10:*:*:*:*:*:*:*
ibminformix_dynamic_server11.50cpe:2.3:a:ibm:informix_dynamic_server:11.50:*:*:*:*:*:*:*

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.931

Percentile

99.1%