Lucene search

K
nvd[email protected]NVD:CVE-2009-3473
HistorySep 29, 2009 - 9:30 p.m.

CVE-2009-3473

2009-09-2921:30:00
web.nvd.nist.gov
6

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

69.4%

IBM DB2 9.1 before FP8 does not require the SETSESSIONUSER privilege for the SET SESSION AUTHORIZATION statement, which has unspecified impact and remote attack vectors.

Affected configurations

Nvd
Node
ibmdb2Match9.1fp1
OR
ibmdb2Match9.1fp2
OR
ibmdb2Match9.1fp3
OR
ibmdb2Match9.1fp4
OR
ibmdb2Match9.1fp5
OR
ibmdb2Match9.1fp6
OR
ibmdb2Match9.1fp7
VendorProductVersionCPE
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp1:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp2:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp3:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp4:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp5:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp6:*:*:*:*:*:*
ibmdb29.1cpe:2.3:a:ibm:db2:9.1:fp7:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

69.4%

Related for NVD:CVE-2009-3473