← Back

CVE-2013-6744

nvd nist
Published: May 30, 2014Modified: May 6, 2026

JSON object

Loading...
8.5
Vector
AV:N/AC:M/Au:S/C:C/I:C/A:C
Exploitability: 6.8 / Impact: 10.0
Source: NVD

Description

The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 before FP3a on Windows allows remote authenticated users to gain privileges by leveraging the CONNECT privilege and the CREATE_EXTERNAL_ROUTINE authority.

Affected (18)

Products: Ibm: Db2
1 product
Db2
Configuration A
18 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 10.1.0.1
Version 10.1.0.2
Version 10.1.0.3
Version 10.1
Version 10.5.0.1
Version 10.5.0.2
Version 10.5
Version 9.5
Version 9.7.0.1
Version 9.7.0.2
Version 9.7.0.3
Version 9.7.0.4
Version 9.7.0.5
Version 9.7.0.6
Version 9.7.0.7
Version 9.7.0.8
Version 9.7.0.9
Version 9.7
Running on/withPlatform Versions
Microsoft
Windows
All versions

Related CWEs

Timeline

No history available yet.