IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT.
History

Fri, 31 Jan 2025 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Hp
Hp hp-ux
Ibm aix
Ibm linux On Ibm Z
Linux
Linux linux Kernel
Microsoft
Microsoft windows
Oracle
Oracle solaris
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:o:hp:hp-ux:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:*:*
Vendors & Products Hp
Hp hp-ux
Ibm aix
Ibm linux On Ibm Z
Linux
Linux linux Kernel
Microsoft
Microsoft windows
Oracle
Oracle solaris

Thu, 09 Jan 2025 14:45:00 +0000

Type Values Removed Values Added
Description IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server)10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT. IBM X-Force ID: 262259. IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT.
Title IBM Db2 for Linux, UNIX and Windows information disclosure IBM Db2 information disclosure
CPEs cpe:2.3:a:ibm:db2:10.5:*:*:*:*:aix:*:*
cpe:2.3:a:ibm:db2:10.5:*:*:*:*:hp-ux:*:*
cpe:2.3:a:ibm:db2:11.1:*:*:*:*:aix:*:*
cpe:2.3:a:ibm:db2:11.1:*:*:*:*:hp-ux:*:*
cpe:2.3:a:ibm:db2:11.5:*:*:*:*:aix:*:*
cpe:2.3:a:ibm:db2:11.5:*:*:*:*:hp-ux:*:*

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-01-09T14:32:36.314Z

Reserved: 2023-07-25T00:01:06.101Z

Link: CVE-2023-38729

cve-icon Vulnrichment

Updated: 2024-08-02T17:46:56.616Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-03T13:16:00.150

Modified: 2025-01-31T15:42:01.847

Link: CVE-2023-38729

cve-icon Redhat

No data.