Search Results (Refine Search)
- CPE Product Version: cpe:/a:ibm:db2:9.8::~~express~~~
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2016-0211 |
IBM DB2 9.7 through FP11, 9.8, 10.1 through FP5, and 10.5 through FP7 on Linux, UNIX, and Windows allows remote authenticated users to cause a denial of service (daemon crash) via a crafted DRDA message. Published: April 27, 2016; 9:59:00 PM -0400 |
V3.0: 4.3 MEDIUM V2.0: 4.0 MEDIUM |
CVE-2015-1935 |
The scalar-function implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors. Published: July 19, 2015; 9:59:06 PM -0400 |
V3.x:(not available) V2.0: 8.0 HIGH |
CVE-2015-1922 |
The Data Movement implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to bypass intended access restrictions and delete table rows via unspecified vectors. Published: July 19, 2015; 9:59:05 PM -0400 |
V3.x:(not available) V2.0: 3.5 LOW |
CVE-2015-1883 |
IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to read certain administrative files via crafted use of an automated-maintenance policy stored procedure. Published: July 19, 2015; 9:59:04 PM -0400 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2015-0157 |
IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to cause a denial of service (daemon crash) by leveraging an unspecified scalar function in a SQL statement. Published: July 19, 2015; 9:59:03 PM -0400 |
V3.x:(not available) V2.0: 6.8 MEDIUM |
CVE-2014-8910 |
IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to read arbitrary text files via a crafted XML/XSLT function in a SELECT statement. Published: July 19, 2015; 9:59:00 PM -0400 |
V3.x:(not available) V2.0: 4.0 MEDIUM |
CVE-2014-0919 |
IBM DB2 9.5 through 10.5 on Linux, UNIX, and Windows stores passwords during the processing of certain SQL statements by the monitoring and audit facilities, which allows remote authenticated users to obtain sensitive information via commands associated with these facilities. Published: May 07, 2015; 9:59:00 PM -0400 |
V3.x:(not available) V2.0: 4.0 MEDIUM |