8.5
CVSSv2

CVE-2010-4069

Published: 25/10/2010 Updated: 27/10/2010
CVSS v2 Base Score: 8.5 | Impact Score: 10 | Exploitability Score: 6.8
VMScore: 756
Vector: AV:N/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 7.x up to and including 7.31, 9.x up to and including 9.40, 10.00 prior to 10.00.xC10, 11.10 prior to 11.10.xC3, and 11.50 prior to 11.50.xC3 allows remote authenticated users to execute arbitrary code via long DBINFO keyword arguments in a SQL statement, aka idsdb00165017, idsdb00165019, idsdb00165021, idsdb00165022, and idsdb00165023.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm informix dynamic server 10.00.xc4

ibm informix dynamic server 10.00.xc1

ibm informix dynamic server 10.00.xc2

ibm informix dynamic server 10.00.tc3tl

ibm informix dynamic server 11.10.xc1de

ibm informix dynamic server 11.10.xc2

ibm informix dynamic server 11.10.xc2e

ibm informix dynamic server 7.31

ibm informix dynamic server 9.40.uc5

ibm informix dynamic server 9.40.xc7

ibm informix dynamic server 10.00.xc7w1

ibm informix dynamic server 10.00.xc9

ibm informix dynamic server 11.10

ibm informix dynamic server 11.10.xc1

ibm informix dynamic server 9.40.tc5

ibm informix dynamic server 9.40.uc1

ibm informix dynamic server 9.40.uc2

ibm informix dynamic server 9.40.uc3

ibm informix dynamic server 10.00.xc5

ibm informix dynamic server 10.00.xc6

ibm informix dynamic server 11.50

ibm informix dynamic server 11.50.xc1

ibm informix dynamic server 9.40.xc5

ibm informix dynamic server 10.00.xc3

ibm informix dynamic server 10.00.xc8

ibm informix dynamic server 10.00

ibm informix dynamic server 10.00.xc10

ibm informix dynamic server 11.50.xc2

ibm informix dynamic server 11.10.tb4tl