Vulnerabilities > Firebirdsql

DATE CVE VULNERABILITY TITLE RISK
2004-05-01 CVE-2004-2043 Remote Pre-Authentication Database Name Buffer Overrun vulnerability in Firebird
Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a denial of service (crash) via a long database name, as demonstrated using the gsec command.
network
low complexity
borland-software firebirdsql
5.0
2003-06-16 CVE-2003-0281 Buffer Overflow vulnerability in Firebirdsql Firebird 1.0.2
Buffer overflow in Firebird 1.0.2 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_inet_server, (2) gds_lock_mgr, or (3) gds_drop.
local
low complexity
firebirdsql
4.6
2003-04-11 CVE-2003-0197 Local Security vulnerability in Interbase
Buffer overflow gds_lock_mgr of Interbase Database 6.x allows local users to gain privileges via a long ISC_LOCK_ENV environment variable (INTERBASE_LOCK).
local
low complexity
borland-software firebirdsql
7.2
2001-02-12 CVE-2001-0008 Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.
network
low complexity
borland-software firebirdsql
critical
10.0