CVE-2010-3739
Published Oct 5, 2010
Last updated 14 years ago
Overview
- Description
- The audit facility in the Security component in IBM DB2 UDB 9.5 before FP6a uses instance-level audit settings to capture connection (aka CONNECT and AUTHENTICATION) events in certain circumstances in which database-level audit settings were intended, which might make it easier for remote attackers to connect without discovery.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.4
- Impact score
- 4.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-287
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:db2_universal_database:*:fp6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1981C2E5-E186-48A7-B977-7FB8A7DBB6EE", "versionEndIncluding": "9.5" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F01421A6-B4B4-4F86-87D3-B11AEC1258CC" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B561679-68AF-4586-919A-83D47195F9FC" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D66FF5FC-E01A-4DE9-B344-FA20941C806B" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp2a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "430BE300-8260-4966-A282-B69C67B6511C" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83FB7558-610A-4218-A347-74E1BF4509CA" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp3a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DCA815B1-EF9D-4F43-A51E-2E808FE124C8" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp3b:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F4EB46DD-C3DF-4509-9B2E-AFEF7F3EA0D8" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ECF24F65-D158-4627-8E0C-C700CCF803D7" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp4a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0445F99B-1AC4-43CE-85EF-7F0BC1AA093D" }, { "criteria": "cpe:2.3:a:ibm:db2_universal_database:9.5:fp5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61533220-2A4F-4BEE-A6BA-27AF0CB2998E" } ], "operator": "OR" } ] } ]