CVE Vulnerabilities

CVE-2021-20373

Published: Dec 09, 2021 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Db2 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an Information Disclosure when using the LOAD utility as under certain circumstances the LOAD utility does not enforce directory restrictions. IBM X-Force ID: 199521.

Affected Software

NameVendorStart VersionEnd Version
Db2Ibm9.7 (including)9.7 (including)
Db2Ibm10.1 (including)10.1 (including)
Db2Ibm10.5 (including)10.5 (including)
Db2Ibm11.1 (including)11.1 (including)
Db2Ibm11.5 (including)11.5 (including)

References