5
CVSSv2

CVE-2008-1880

Published: 12/05/2008 Updated: 08/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The default configuration of Firebird prior to 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD environment variable before starting Firebird, which allows remote malicious users to bypass SYSDBA authentication and obtain sensitive database information via an empty password.

Vulnerable Product Search on Vulmon Subscribe to Product

firebird firebird 2.0.3.12981.0

firebird firebird