CVE-2010-3739

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
5 October 2010

Summary

The audit facility in the Security component in IBM DB2 UDB 9.5 before FP6a uses instance-level audit settings to capture connection (aka CONNECT and AUTHENTICATION) events in certain circumstances in which database-level audit settings were intended, which might make it easier for remote attackers to connect without discovery.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.