Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Informix Dynamic Server (IDS) before 9.40.xC7 and 10.00 before 10.00.xC3 does not use database creation permissions, which allows remote authenticated users to create arbitrary databases.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Informix Dynamic Server 获得连接权限漏洞
Vulnerability Description
Informix Dynamic Server(IDS)是一款由IBM开发的数据库。 IBM Informix Dynamic Server中存在多个安全漏洞,具体如下: 在Informix上公众(public)可以获得连接权限,因此任何登录用户都可以进行连接。公众还可以发布并创建数据库命令。在创建数据库时,创建该数据库的用户会成为该数据库的DBA。DBA可以以informix用户的权限执行代码,并逐步获得root用户权限。
CVSS Information
N/A
Vulnerability Type
N/A