Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-6717

Опубликовано: 19 дек. 2013
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

The OLAP query engine in IBM DB2 and DB2 Connect 9.7 through FP9, 9.8 through FP5, 10.1 through FP3, and 10.5 through FP2, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remote authenticated users to cause a denial of service (database outage and deactivation) via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7.0.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7.0.9:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:ibm:db2:9.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.8.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.8.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.8.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.8.0.5:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:a:ibm:db2:10.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.5.0.2:*:*:*:*:*:*:*
Конфигурация 4
cpe:2.3:a:ibm:db2_purescale_feature_9.8:-:-:-:*:-:db2_enterprise_edition:*:*
Конфигурация 5

Одно из

cpe:2.3:a:ibm:db2:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.1.0.3:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01744
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

The OLAP query engine in IBM DB2 and DB2 Connect 9.7 through FP9, 9.8 through FP5, 10.1 through FP3, and 10.5 through FP2, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remote authenticated users to cause a denial of service (database outage and deactivation) via unspecified vectors.

EPSS

Процентиль: 82%
0.01744
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo