4.3
CVSSv2

CVE-2017-1520

Published: 12/09/2017 Updated: 15/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 3.7 | Impact Score: 1.4 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

IBM DB2 9.7, 10,1, 10.5, and 11.1 is vulnerable to an unauthorized command that allows the database to be activated when authentication type is CLIENT. IBM X-Force ID: 129830.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm db2 10.1

ibm db2 10.1.0.2

ibm db2_connect 10.1.0.3

ibm db2_connect 10.1.0.5

ibm db2_connect 10.5.0.4

ibm db2_connect 10.5.0.6

ibm db2 10.5.0.4

ibm db2 10.5.0.6

ibm db2_connect 9.7.0.5

ibm db2_connect 9.7.0.7

ibm db2 9.7

ibm db2 9.7.0.2

ibm db2 9.7.0.9

ibm db2 9.7.0.10

ibm db2 10.1.0.3

ibm db2 10.1.0.4

ibm db2 10.1.0.5

ibm db2_connect 10.1

ibm db2_connect 10.1.0.1

ibm db2 10.5

ibm db2 10.5.0.1

ibm db2 10.5.0.2

ibm db2 10.5.0.3

ibm db2_connect 9.7.0.8

ibm db2_connect 9.7.0.9

ibm db2_connect 9.7.0.10

ibm db2_connect 9.7.0.11

ibm db2_connect 11.1.0.0

ibm db2 10.1.0.1

ibm db2_connect 10.1.0.2

ibm db2_connect 10.1.0.4

ibm db2_connect 10.5.0.5

ibm db2_connect 10.5.0.7

ibm db2 10.5.0.5

ibm db2_connect 9.7.0.4

ibm db2_connect 9.7.0.6

ibm db2 9.7.0.1

ibm db2 9.7.0.3

ibm db2 9.7.0.8

ibm db2 9.7.0.11

ibm db2 11.1.0.0

ibm db2_connect 10.5

ibm db2_connect 10.5.0.1

ibm db2_connect 10.5.0.2

ibm db2_connect 10.5.0.3

ibm db2 10.5.0.7

ibm db2_connect 9.7

ibm db2_connect 9.7.0.1

ibm db2_connect 9.7.0.2

ibm db2_connect 9.7.0.3

ibm db2 9.7.0.4

ibm db2 9.7.0.5

ibm db2 9.7.0.6

ibm db2 9.7.0.7