CVE-2008-1997

Unspecified vulnerability in the ADMIN_SP_C2 procedure in IBM DB2 8 before FP16, 9.1 before FP4a, and 9.5 before FP1 allows remote authenticated users to execute arbitrary code via unknown vectors. NOTE: the ADMIN_SP_C issue is already covered by CVE-2008-0699.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
VendorProductVersion
ibmdb2
8.0
ibmdb2
8.0:fixpak1
ibmdb2
8.0:fixpak10
ibmdb2
8.0:fixpak11
ibmdb2
8.0:fixpak12
ibmdb2
8.0:fixpak13
ibmdb2
8.0:fixpak14
ibmdb2
8.0:fixpak15
ibmdb2
8.0:fixpak2
ibmdb2
8.0:fixpak3
ibmdb2
8.0:fixpak4
ibmdb2
8.0:fixpak5
ibmdb2
8.0:fixpak6
ibmdb2
8.0:fixpak6a
ibmdb2
8.0:fixpak6b
ibmdb2
8.0:fixpak6c
ibmdb2
8.0:fixpak7
ibmdb2
8.0:fixpak7a
ibmdb2
8.0:fixpak7b
ibmdb2
8.0:fixpak8
ibmdb2
8.0:fixpak8a
ibmdb2
8.0:fixpak9
ibmdb2
8.0:fixpak9a
ibmdb2
9.1
ibmdb2
9.1:fp1
ibmdb2
9.1:fp2
ibmdb2
9.1:fp2a
ibmdb2
9.1:fp3
ibmdb2
9.1:fp3a
ibmdb2
9.1:fp4
ibmdb2
9.5
𝑥
= Vulnerable software versions