Vulnerability Description
Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal sequences in the DBLANG environment variable.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Informix Dynamic Server | <= 10.00 |
Related Weaknesses (CWE)
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=624
- http://secunia.com/advisories/27542PatchVendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg1IC54252
- http://www-1.ibm.com/support/docview.wss?uid=swg27011082Patch
- http://www.securityfocus.com/bid/26363
- http://www.vupen.com/english/advisories/2007/3757
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38297
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=624
- http://secunia.com/advisories/27542PatchVendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg1IC54252
- http://www-1.ibm.com/support/docview.wss?uid=swg27011082Patch
- http://www.securityfocus.com/bid/26363
- http://www.vupen.com/english/advisories/2007/3757
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38297
FAQ
What is CVE-2007-5956?
CVE-2007-5956 is a vulnerability with a CVSS score of 7.2 (HIGH). Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal se...
How severe is CVE-2007-5956?
CVE-2007-5956 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-5956?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Informix Dynamic Server.