Vulnerabilities > IBM > High

DATE CVE VULNERABILITY TITLE RISK
2008-03-18 CVE-2008-0727 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IBM Informix Dynamic Server
Multiple buffer overflows in oninit.exe in IBM Informix Dynamic Server (IDS) 7.x through 11.x allow (1) remote attackers to execute arbitrary code via a long password and (2) remote authenticated users to execute arbitrary code via a long DBPATH value.
network
low complexity
ibm CWE-119
8.5
2008-02-12 CVE-2008-0698 Buffer Errors vulnerability in IBM DB2 8.2Fixpack15
Buffer overflow in the DAS server in IBM DB2 UDB before 8.2 Fixpak 16 has unknown attack vectors, and an impact probably involving "invalid memory access."
network
low complexity
ibm CWE-119
7.8
2008-02-12 CVE-2008-0697 Permissions, Privileges, and Access Controls vulnerability in IBM DB2 8.2Fixpack15
Unspecified vulnerability in DB2PD in IBM DB2 UDB before 8.2 Fixpak 16 allows local users to gain root privileges via unspecified vectors.
local
low complexity
ibm CWE-264
7.2
2008-02-12 CVE-2008-0696 Permissions, Privileges, and Access Controls vulnerability in IBM DB2 8.2Fixpack15
IBM DB2 UDB before 8.2 Fixpak 16 does not properly check authorization for the ALTER TABLE statement, which has unknown impact and attack vectors.
network
low complexity
ibm CWE-264
7.5
2008-02-05 CVE-2008-0588 Permissions, Privileges, and Access Controls vulnerability in IBM AIX 5.2/5.3
Buffer overflow in the utape program in devices.scsi.tape.diag in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.
local
low complexity
ibm CWE-264
7.2
2008-02-05 CVE-2008-0587 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IBM AIX 5.2/5.3
Buffer overflow in the uspchrp program in devices.chrp.base.diag in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.
local
low complexity
ibm CWE-119
7.2
2008-02-05 CVE-2008-0586 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in IBM AIX 5.2/5.3
Multiple buffer overflows in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors related to the (1) lchangevg, (2) ldeletepv, (3) putlvodm, (4) lvaryoffvg, and (5) lvgenminor programs in bos.rte.lvm; and the (6) tellclvmd program in bos.clvm.enh.
local
low complexity
ibm CWE-119
7.2
2008-02-05 CVE-2008-0584 Permissions, Privileges, and Access Controls vulnerability in IBM AIX 5.2/5.3
Multiple buffer overflows in bos.rte.control in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors related to the (1) swap, (2) swapoff, and (3) swapon programs.
local
low complexity
ibm CWE-264
7.2
2008-01-30 CVE-2008-0495 Denial Of Service vulnerability in IBM Hardware Management Console 7.3.2.0
Unspecified vulnerability in the Pegasus CIM Server in IBM Hardware Management Console (HMC) 7 R3.2.0 allows remote attackers to cause a denial of service via unspecified vectors.
network
low complexity
ibm
7.8
2008-01-25 CVE-2007-5764 Buffer Errors vulnerability in IBM AIX 5.2/5.3/6.1
Buffer overflow in the pioout program in printers.rte in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via a long command line option.
local
low complexity
ibm CWE-119
7.2