Lucene search

K
cveMitreCVE-2010-4069
HistoryOct 25, 2010 - 8:01 p.m.

CVE-2010-4069

2010-10-2520:01:06
CWE-119
mitre
web.nvd.nist.gov
24
cve-2010-4069
ibm informix dynamic server
buffer overflow
ids
sql
security vulnerability

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.876

Percentile

98.7%

Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 7.x through 7.31, 9.x through 9.40, 10.00 before 10.00.xC10, 11.10 before 11.10.xC3, and 11.50 before 11.50.xC3 allows remote authenticated users to execute arbitrary code via long DBINFO keyword arguments in a SQL statement, aka idsdb00165017, idsdb00165019, idsdb00165021, idsdb00165022, and idsdb00165023.

Affected configurations

Nvd
Node
ibminformix_dynamic_serverMatch7.31
OR
ibminformix_dynamic_serverMatch9.40.tc5
OR
ibminformix_dynamic_serverMatch9.40.uc1
OR
ibminformix_dynamic_serverMatch9.40.uc2
OR
ibminformix_dynamic_serverMatch9.40.uc3
OR
ibminformix_dynamic_serverMatch9.40.uc5
OR
ibminformix_dynamic_serverMatch9.40.xc5
OR
ibminformix_dynamic_serverMatch9.40.xc7
OR
ibminformix_dynamic_serverMatch10.00
OR
ibminformix_dynamic_serverMatch10.00.tc3tl
OR
ibminformix_dynamic_serverMatch10.00.xc1
OR
ibminformix_dynamic_serverMatch10.00.xc2
OR
ibminformix_dynamic_serverMatch10.00.xc3
OR
ibminformix_dynamic_serverMatch10.00.xc4
OR
ibminformix_dynamic_serverMatch10.00.xc5
OR
ibminformix_dynamic_serverMatch10.00.xc6
OR
ibminformix_dynamic_serverMatch10.00.xc7w1
OR
ibminformix_dynamic_serverMatch10.00.xc8
OR
ibminformix_dynamic_serverMatch10.00.xc9
OR
ibminformix_dynamic_serverMatch10.00.xc10
OR
ibminformix_dynamic_serverMatch11.10
OR
ibminformix_dynamic_serverMatch11.10.tb4tl
OR
ibminformix_dynamic_serverMatch11.10.xc1
OR
ibminformix_dynamic_serverMatch11.10.xc1de
OR
ibminformix_dynamic_serverMatch11.10.xc2
OR
ibminformix_dynamic_serverMatch11.10.xc2e
OR
ibminformix_dynamic_serverMatch11.50
OR
ibminformix_dynamic_serverMatch11.50.xc1
OR
ibminformix_dynamic_serverMatch11.50.xc2
VendorProductVersionCPE
ibminformix_dynamic_server7.31cpe:2.3:a:ibm:informix_dynamic_server:7.31:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.tc5cpe:2.3:a:ibm:informix_dynamic_server:9.40.tc5:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.uc1cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc1:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.uc2cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc2:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.uc3cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc3:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.uc5cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc5:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.xc5cpe:2.3:a:ibm:informix_dynamic_server:9.40.xc5:*:*:*:*:*:*:*
ibminformix_dynamic_server9.40.xc7cpe:2.3:a:ibm:informix_dynamic_server:9.40.xc7:*:*:*:*:*:*:*
ibminformix_dynamic_server10.00cpe:2.3:a:ibm:informix_dynamic_server:10.00:*:*:*:*:*:*:*
ibminformix_dynamic_server10.00.tc3tlcpe:2.3:a:ibm:informix_dynamic_server:10.00.tc3tl:*:*:*:*:*:*:*
Rows per page:
1-10 of 291

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.876

Percentile

98.7%