Vulnerabilities > IBM > Informix Dynamic Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2006-08-08 CVE-2006-3855 Multiple vulnerability in IBM Informix Dynamic Server
The ifx_load_internal function in IBM Informix Dynamic Server (IDS) allows remote authenticated users to execute arbitrary C code via the DllMain or _init function in a library, aka "C code UDR." This vulnerability is addressed in the following product releases: IBM, Informix IDS, 9.40 xC7 IBM, Informix IDS, 10.00 xC4
network
low complexity
ibm
6.5
2006-08-08 CVE-2006-3853 Multiple vulnerability in IBM Informix Dynamic Server
Buffer overflow in IBM Informix Dynamic Server (IDS) before 9.40.TC7 and 10.00 before 10.00.TC3, when running on Windows, allows remote attackers to execute arbitrary code via a long username.
network
high complexity
ibm
5.1
2004-12-31 CVE-2004-2490 Local Privilege Escalation vulnerability in IBM products
Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.xC1 and 9.40.xC2 allows local users to execute arbitrary code via a long GL_PATH environment variable.
local
low complexity
ibm
4.6
2004-12-31 CVE-2004-2489 Local Privilege Escalation vulnerability in IBM Informix
Format string vulnerability in IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to execute arbitrary code via a modified INFORMIXDIR environment variable that points to a file with format string specifiers in the filename.
local
low complexity
ibm
4.6