IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7145721 | Vendor Advisory |
| https://https://exchange.xforce.ibmcloud.com/vulnerabilities/262259 | Broken Link Third Party Advisory |
| https://security.netapp.com/advisory/ntap-20240517-0004/ | Third Party Advisory |
| https://www.ibm.com/support/pages/node/7145721 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2024-04-03 13:16
Updated : 2025-01-31 15:42
NVD link : CVE-2023-38729
Mitre link : CVE-2023-38729
CVE.ORG link : CVE-2023-38729
JSON object : View
Products Affected
ibm
- db2
- aix
- linux_on_ibm_z
hp
- hp-ux
oracle
- solaris
microsoft
- windows
linux
- linux_kernel
CWE
