MEDIUM · 4.4

CVE-2007-1228

IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.

Vulnerability Description

IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.

CVSS Score

4.4

MEDIUM

AV:L/AC:M/Au:S/C:C/I:N/A:N
Confidentiality
COMPLETE
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IbmDb28.2
UnixUnixAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-1228?

CVE-2007-1228 is a vulnerability with a CVSS score of 4.4 (MEDIUM). IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.

How severe is CVE-2007-1228?

CVE-2007-1228 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-1228?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Db2, Unix Unix.