Vulnerabilities > IBM > I > Low

DATE CVE VULNERABILITY TITLE RISK
2024-06-15 CVE-2024-31870 Information Exposure Through Discrepancy vulnerability in IBM I
IBM Db2 for i 7.2, 7.3, 7.4, and 7.5 supplies user defined table function is vulnerable to user enumeration by a local authenticated attacker, without having authority to the related *USRPRF objects.
local
low complexity
ibm CWE-203
3.3
2020-05-17 CVE-2020-4345 SQL Injection vulnerability in IBM I 7.2/7.3/7.4
IBM i 7.2, 7.3, and 7.4 users running complex SQL statements under a specific set of circumstances may allow a local user to obtain sensitive information that they should not have access to.
local
low complexity
ibm CWE-89
3.3