Vulnerabilities > CVE-2004-2319 - Local Privilege Escalation vulnerability in IBM products
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
NONE Summary
IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to (1) create or overwrite files via the /001 log file to onedcu or (2) read arbitrary files via a symlink attack on a file in /tmp to onshowaudit.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
References
- http://secunia.com/advisories/10737/
- http://www.osvdb.org/3758
- http://www.osvdb.org/3760
- http://www.securityfocus.com/archive/1/351770
- http://www.securityfocus.com/bid/9511
- http://www.securityfocus.com/bid/9512
- http://www-1.ibm.com/support/docview.wss?uid=swg21153336
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14969
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14971