Vulnerabilities > CVE-2004-2131 - Multiple vulnerability in IBM products

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
ibm
exploit available

Summary

Stack-based buffer overflow in ontape for IBM Informix Dynamic Server (IDS) 9.40.xC3 and earlier allows local users, with DSA privileges, to execute arbitrary code via a long ONCONFIG environment variable.

Exploit-Db

  • descriptionIBM Informix Dynamic Server 9.40/Informix Extended Parallel Server 8.40 Multiple Vulnerabilities (2). CVE-2004-2131. Local exploit for unix platform
    idEDB-ID:23610
    last seen2016-02-02
    modified2003-08-08
    published2003-08-08
    reporterpask
    sourcehttps://www.exploit-db.com/download/23610/
    titleIBM Informix Dynamic Server 9.40/Informix Extended Parallel Server 8.40 - Multiple Vulnerabilities 2
  • descriptionIBM Informix Dynamic Server 9.40/Informix Extended Parallel Server 8.40 Multiple Vulnerabilities (1). CVE-2004-2131. Local exploit for unix platform
    idEDB-ID:23609
    last seen2016-02-02
    modified2003-08-08
    published2003-08-08
    reporterpask
    sourcehttps://www.exploit-db.com/download/23609/
    titleIBM Informix Dynamic Server 9.40/Informix Extended Parallel Server 8.40 - Multiple Vulnerabilities 1