CVE Vulnerabilities

CVE-2008-0306

Published: Mar 11, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

sdbstarter in SAP MaxDB 7.6.0.37, and possibly other versions, allows local users to execute arbitrary commands by using unspecified environment variables to modify configuration settings.

Affected Software

Name Vendor Start Version End Version
Maxdb Sap 7.6.0.37 7.6.0.37
Maxdb-7.5.00 Ubuntu dapper *
Maxdb-7.5.00 Ubuntu edgy *
Maxdb-7.5.00 Ubuntu feisty *
Maxdb-7.5.00 Ubuntu gutsy *
Maxdb-7.5.00 Ubuntu upstream *

References