PT-2008-2002 · Ibm · Ibm Informix Dynamic Server

Publicado

2008-01-18

·

Atualizado

2017-08-08

·

CVE-2008-0369

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM Informix Dynamic Server (IDS) versions 10.00.xC7 and earlier
Description The issue allows local users to create arbitrary files by specifying the target file in the SQLIDEBUG environment variable, whose ownership is changed to the user invoking the programs.
Recommendations For IBM Informix Dynamic Server (IDS) versions 10.00.xC7 and earlier, update to version 10.00.xC8 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2008-0369

Produtos afetados

Ibm Informix Dynamic Server