CVE Vulnerabilities

CVE-2013-4033

Published: Aug 28, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:N/AC:H/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM DB2 and DB2 Connect 9.7 through FP8, 9.8 through FP5, 10.1 through FP2, and 10.5 through FP1 allow remote authenticated users to execute DML statements by leveraging EXPLAIN authority.

Affected Software

NameVendorStart VersionEnd Version
Db2Ibm9.7 (including)9.7 (including)
Db2Ibm9.8 (including)9.8 (including)
Db2Ibm10.1 (including)10.1 (including)
Db2Ibm10.5 (including)10.5 (including)
Db2_connectIbm9.5 (including)9.5 (including)
Db2_connectIbm9.7 (including)9.7 (including)
Db2_connectIbm9.8 (including)9.8 (including)
Db2_connectIbm10.1 (including)10.1 (including)
Db2_connectIbm10.5 (including)10.5 (including)

References