Vulnerabilities > CVE-2004-2489 - Local Privilege Escalation vulnerability in IBM Informix
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Format string vulnerability in IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to execute arbitrary code via a modified INFORMIXDIR environment variable that points to a file with format string specifiers in the filename.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |