Skip to main content

Vendor/product archive

ibm / db2 CVEs

Beta · best-effort

345 CVEs tagged to ibm / db214 Critical, 98 High, 218 Medium, 15 Low, 0 Unrated.

CVE-2021-29752

Published Sep 16, 2021

IBM Db2 11.2 and 11.5 contains an information disclosure vulnerability, exposing remote storage credentials to privileged users under specific conditions. IBM X-Fporce ID: 201780.

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4945

Published Jun 24, 2021

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user to overwrite arbirary files due to improper group permissions. IBM X-Force…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-4885

Published Jun 24, 2021

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow a local user to access and change the configuration of Db2 due to a race condition of a symbolic…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-4588

Published May 26, 2021

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to execute arbitrary code and conduct DLL hijacking atta…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-4642

Published Dec 23, 2020

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow local attacker to cause a denial of service inside the "DB2 Managemen…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-4739

Published Nov 20, 2020

IBM DB2 Accessories Suite for Linux, UNIX, and Windows, DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local authentic…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-4414

Published Jul 1, 2020

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local attacker to perform unauthorized actions on the system, cause…

CVSS 4.4 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2020-4355

Published Jul 1, 2020

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a denial of service, caused by improper handling of Secure Socke…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 151-175 of 345 CVEsPage 7 of 14