CVE-2010-3474
20.09.2010, 22:00
IBM DB2 9.7 before FP3 does not perform the expected drops or invalidations of dependent functions upon a loss of privileges by the functions' owners, which allows remote authenticated users to bypass intended access restrictions via calls to these functions, a different vulnerability than CVE-2009-3471.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | db2 | 9.7 |
ibm | db2 | 9.7.0.1 |
ibm | db2 | 9.7.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References