Back to search
CVE-2008-1997
Published: Apr 28, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Unspecified vulnerability in the ADMIN_SP_C2 procedure in IBM DB2 8 before FP16, 9.1 before FP4a, and 9.5 before FP1 allows remote authenticated users to execute arbitrary code via unknown vectors. NOTE: the ADMIN_SP_C issue is already covered by CVE-2008-0699.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20080418 Team SHATTER Security Advisory: IBM DB2 UDB Arbitrary code execution in ADMIN_SP_C/ADMIN_SP_C2 procedures
mailing-list
x_refsource_BUGTRAQ
IZ06972
vendor-advisory
x_refsource_AIXAPAR
29022
third-party-advisory
x_refsource_SECUNIA
http://www.appsecinc.com/resources/alerts/db2/2008-02.shtml
x_refsource_MISC
3841
third-party-advisory
x_refsource_SREASON
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now