QID 20222
Date Published: 2021-07-15
QID 20222: IBM DB2 Improper Group Permissions Vulnerability (6466367)
DB2 is a family of data management products, including database servers, developed by IBM.
IBM DB2 could allow an authenticated user to overwrite arbitrary files due to improper group permissions.
Affected Versions:
IBM DB2 Prior to 11.5 Fix Pack m6fp0
QID Detection Logic:
Authenticated (DB2):
This QID queries the DB2 server to get the server version and fix pack level and checks to see if it's vulnerable.
Successful exploitation could allow an authenticated user to overwrite arbitrary files
Solution
Please refer to the following link 6466367 for more details.
Vendor References
- 6466367 -
www.ibm.com/support/pages/node/6466367
CVEs related to QID 20222
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 6466367 |
|