First published: Fri Aug 24 2012(Updated: )
Unspecified vulnerability in the XML feature in IBM DB2 9.7 before FP6 on Linux, UNIX, and Windows allows remote authenticated users to read arbitrary XML files via unknown vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Db2 | =9.7 | |
IBM Db2 | =9.7.0.1 | |
IBM Db2 | =9.7.0.2 | |
IBM Db2 | =9.7.0.3 | |
IBM Db2 | =9.7.0.4 | |
IBM Db2 | =9.7.0.5 | |
Linux kernel | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2012-0713 is not explicitly stated, but it allows remote authenticated users to read arbitrary XML files, indicating a risk of information disclosure.
To address CVE-2012-0713, upgrade IBM DB2 to version 9.7 FP6 or later.
CVE-2012-0713 affects IBM DB2 version 9.7 before FP6 on Linux, UNIX, and Windows platforms.
CVE-2012-0713 involves an unspecified vulnerability in the XML feature of IBM DB2 which permits unauthorized access to XML files.
Yes, CVE-2012-0713 can be exploited remotely by authenticated users.