PT-2003-1945 · Ibm · Ibm Db2

Juan Manuel Pascual Escriba

+1

·

Published

2003-10-28

·

Updated

2016-10-18

·

CVE-2003-0898

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM DB2 versions 7.1 through 7.2 before FixPak 10a
Description The issue allows local users to overwrite arbitrary files and gain privileges via a symlink attack on (1) db2job and (2) db2job2.
Recommendations For IBM DB2 versions 7.1 through 7.2 before FixPak 10a, apply FixPak 10a to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0898

Affected Products

Ibm Db2