IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 does not properly revoke privileges on methods, which allows remote authenticated users to execute a method after revocation until the routine auth cache is flushed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Db2_universal_database | Ibm | * | 8.0 (including) |
Db2_universal_database | Ibm | * | 9.1 (including) |