Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | |||
CVE ID: | CVE-2008-2154 |
Description: | IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 provides an INSTALL_JAR (aka sqlj.install_jar) procedure, which allows remote authenticated users to create or overwrite arbitrary files via unspecified calls. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-2154 AIX APAR: IZ21983 http://www-01.ibm.com/support/docview.wss?uid=swg1IZ21983 AIX APAR: IZ22142 http://www-01.ibm.com/support/docview.wss?uid=swg1IZ22142 AIX APAR: IZ22143 http://www-01.ibm.com/support/docview.wss?uid=swg1IZ22143 BugTraq ID: 35409 http://www.securityfocus.com/bid/35409 http://osvdb.org/48147 http://secunia.com/advisories/31787 XForce ISS Database: db2-installjar-priv-escalation(51105) https://exchange.xforce.ibmcloud.com/vulnerabilities/51105 |