CVE-2015-1883

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
20/07/2015
Last modified:
12/04/2025

Description

IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to read certain administrative files via crafted use of an automated-maintenance policy stored procedure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:db2:9.7:*:*:*:advanced_enterprise:*:*:*
cpe:2.3:a:ibm:db2:9.7:*:*:*:advanced_workgroup:*:*:*
cpe:2.3:a:ibm:db2:9.7:*:*:*:enterprise:*:*:*
cpe:2.3:a:ibm:db2:9.7:*:*:*:express:*:*:*
cpe:2.3:a:ibm:db2:9.7:*:*:*:workgroup:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:advanced_enterprise:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:advanced_workgroup:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:enterprise:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:express:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:workgroup:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:advanced_enterprise:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:advanced_workgroup:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:enterprise:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:express:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:workgroup:*:*:*