← Volver a CVEs
CVE-2022-22483
MEDIUM6.5
Descripcion
IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to an information disclosure in some scenarios due to unauthorized access caused by improper privilege management when CREATE OR REPLACE command is used. IBM X-Force ID: 225979.
Detalles CVE
Puntuacion CVSS v3.16.5
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado9/13/2022
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
hp:hp-uxibm:aixibm:db2linux:linux_kernelmicrosoft:windowsoracle:solaris
Debilidades (CWE)
CWE-269
Referencias
https://exchange.xforce.ibmcloud.com/vulnerabilities/225979(psirt@us.ibm.com)
https://security.netapp.com/advisory/ntap-20230921-0004/(psirt@us.ibm.com)
https://www.ibm.com/support/pages/node/6618779(psirt@us.ibm.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/225979(af854a3a-2127-422b-91ae-364da2661108)
https://security.netapp.com/advisory/ntap-20230921-0004/(af854a3a-2127-422b-91ae-364da2661108)
https://www.ibm.com/support/pages/node/6618779(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.