CVE-2006-3855
Published Aug 8, 2006
Last updated 6 years ago
Overview
- Description
- The ifx_load_internal function in IBM Informix Dynamic Server (IDS) allows remote authenticated users to execute arbitrary C code via the DllMain or _init function in a library, aka "C code UDR."
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.5
- Impact score
- 6.4
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Evaluator
- Comment
- -
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58A9F81C-C618-435D-9912-0E61EAB02560" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.40.tc5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE9B0C17-2D85-4729-85EF-2F5C750BF51B" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "910D9A17-43A7-4F9E-98E0-2C465AC8BD2F" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E61711D-4C3E-4A6D-89A8-85B7CDD7FAE1" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2CD7B84-2861-4542-8A08-C668065C8DB4" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:9.40.uc5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E64D85E2-AA7E-4704-A2FA-BD69744423CF" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1716E256-B186-442F-8C4C-9305E0953081" }, { "criteria": "cpe:2.3:a:ibm:informix_dynamic_server:10.0.xc3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C7931542-8DB8-4BC3-A319-9352EBC62158" } ], "operator": "OR" } ] } ]