4
CVSSv2

CVE-2014-8910

Published: 20/07/2015 Updated: 22/09/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to read arbitrary text files via a crafted XML/XSLT function in a SELECT statement.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm db2 9.7

ibm db2 9.8

ibm db2 10.1

ibm db2 10.5