PT-2006-4717 · Ibm · Ibm Informix Dynamic Server

David Litchfield

·

Published

2006-08-17

·

Updated

2018-10-17

·

CVE-2006-3859

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Informix Dynamic Server (IDS) (affected versions not specified)
Description The issue allows remote authenticated users to create and overwrite arbitrary files. This can be achieved through the LOTOFILE and trl tracefile set functions, as well as the "SET DEBUG FILE" commands.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3859

Affected Products

Ibm Informix Dynamic Server