CVE-2007-1228

IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:db2:8.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp1:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp2:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp3:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp4:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp5:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.2:fp6:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.0:fp1:*:*:*:*:*:*
cpe:2.3:o:unix:unix:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:27

Type Values Removed Values Added
References () http://secunia.com/advisories/24387 - Vendor Advisory () http://secunia.com/advisories/24387 - Vendor Advisory
References () http://www-1.ibm.com/support/docview.wss?uid=swg1IY86711 - Vendor Advisory () http://www-1.ibm.com/support/docview.wss?uid=swg1IY86711 - Vendor Advisory
References () http://www-1.ibm.com/support/docview.wss?uid=swg1IY87492 - Vendor Advisory () http://www-1.ibm.com/support/docview.wss?uid=swg1IY87492 - Vendor Advisory
References () http://www.securityfocus.com/bid/22729 - () http://www.securityfocus.com/bid/22729 -
References () http://www.securitytracker.com/id?1017731 - () http://www.securitytracker.com/id?1017731 -

Information

Published : 2007-03-02 22:19

Updated : 2024-11-21 00:27


NVD link : CVE-2007-1228

Mitre link : CVE-2007-1228

CVE.ORG link : CVE-2007-1228


JSON object : View

Products Affected

unix

  • unix

ibm

  • db2
CWE
CWE-287

Improper Authentication