CVE-2009-4331

The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with incorrect file-permission and authorization settings, which has unknown impact and local attack vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
VendorProductVersion
ibmdb2
9.5
ibmdb2
9.5:fp1
ibmdb2
9.5:fp2
ibmdb2
9.5:fp2a
ibmdb2
9.5:fp3
ibmdb2
9.5:fp3a
ibmdb2
9.5:fp3b
ibmdb2
9.7
𝑥
= Vulnerable software versions
Common Weakness Enumeration