First published: Wed Nov 14 2007(Updated: )
Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal sequences in the DBLANG environment variable.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Informix | <=10.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5956 is considered a medium-severity vulnerability due to its potential to allow local privilege escalation.
To fix CVE-2007-5956, upgrade the IBM Informix Dynamic Server to version 10.00.xC7W1 or later.
CVE-2007-5956 affects local users of IBM Informix Dynamic Server versions prior to 10.00.xC7W1.
CVE-2007-5956 can be exploited to gain elevated privileges through directory traversal in the DBLANG environment variable.
CVE-2007-5956 was reported in 2007.