Vulnerabilities > IBM > Soliddb > 06.00.1018

DATE CVE VULNERABILITY TITLE RISK
2010-10-23 CVE-2010-4055 Resource Management Errors vulnerability in IBM Soliddb
Stack consumption vulnerability in solid.exe in IBM solidDB 6.5.0.3 and earlier allows remote attackers to cause a denial of service (memory consumption and daemon crash) by connecting to TCP port 1315 and sending a packet with many integer fields, which trigger many recursive calls of a certain function.
network
low complexity
ibm CWE-399
5.0
2010-07-22 CVE-2010-2771 Code Injection vulnerability in IBM Soliddb
solid.exe in IBM solidDB before 6.5 FP2 allows remote attackers to execute arbitrary code via a long username field in the first handshake packet.
network
low complexity
ibm CWE-94
critical
10.0
2008-04-09 CVE-2008-1706 Numeric Errors vulnerability in IBM Soliddb 06.00.1018
Uncontrolled array index in IBM solidDB 06.00.1018 and earlier allows remote attackers to cause a denial of service (daemon crash) via a large value in a certain 32-bit field.
network
ibm CWE-189
4.3
2008-04-09 CVE-2008-1705 USE of Externally-Controlled Format String vulnerability in IBM Soliddb 06.00.1018
Format string vulnerability in the logging function in IBM solidDB 06.00.1018 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the (1) user name, (2) peer name, and possibly unspecified other fields.
network
ibm CWE-134
6.8