Vulnerabilities > IBM > Informix Dynamic Server

DATE CVE VULNERABILITY TITLE RISK
2019-08-20 CVE-2018-1633 Link Following vulnerability in IBM Informix Dynamic Server 12.10
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onsrvapd.
local
low complexity
ibm CWE-59
6.7
2019-08-20 CVE-2018-1632 Link Following vulnerability in IBM Informix Dynamic Server 12.10
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in .infxdirs.
local
low complexity
ibm CWE-59
6.7
2019-08-20 CVE-2018-1631 Link Following vulnerability in IBM Informix Dynamic Server 12.1
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in oninit mongohash.
local
low complexity
ibm CWE-59
6.7
2019-08-20 CVE-2018-1630 Link Following vulnerability in IBM Informix Dynamic Server 12.1
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onmode.
local
low complexity
ibm CWE-59
6.7
2017-09-13 CVE-2017-1508 Unspecified vulnerability in IBM Informix Dynamic Server 12.10
IBM Informix Dynamic Server 12.1 could allow a local user logged in with database administrator user to gain root privileges.
local
low complexity
ibm
6.7
2017-06-29 CVE-2017-1310 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM Informix Dynamic Server 12.10
IBM Informix Dynamic Server 12.1 could allow an authenticated user to cause a buffer overflow that would write large assertion fail files to the server.
network
low complexity
ibm CWE-119
6.5
2016-03-28 CVE-2016-0226 Improper Access Control vulnerability in IBM Informix Dynamic Server 11.70.Xcn
The client implementation in IBM Informix Dynamic Server 11.70.xCn on Windows does not properly restrict access to the (1) nsrd, (2) nsrexecd, and (3) portmap executable files, which allows local users to gain privileges via a Trojan horse file.
local
low complexity
ibm CWE-284
7.8