CVE-2007-5956: Path Traversal
Published Nov 14, 2007
·Updated
Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal sequences in the DBLANG environment variable.
Affected Software
1 affected component
IBM Informix Dynamic Server<=10.00
Remediation
Patch Available
Patch Available
Event History
Nov 14, 2007
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5956?
CVE-2007-5956 is considered a medium-severity vulnerability due to its potential to allow local privilege escalation.
2
How do I fix CVE-2007-5956?
To fix CVE-2007-5956, upgrade the IBM Informix Dynamic Server to version 10.00.xC7W1 or later.
3
Who is affected by CVE-2007-5956?
CVE-2007-5956 affects local users of IBM Informix Dynamic Server versions prior to 10.00.xC7W1.
4
What kind of attacks can be performed using CVE-2007-5956?
CVE-2007-5956 can be exploited to gain elevated privileges through directory traversal in the DBLANG environment variable.
5
When was CVE-2007-5956 reported?
CVE-2007-5956 was reported in 2007.