CVE-2005-3643

IBM DB2 Universal Database - Unauthenticated Authentication Bypass via Guest Account

Title source: llm
STIX 2.1

Description

IBM DB2 Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account without supplying a password.

References (2)

Core 2
Core References
Various Sources x_refsource_misc
http://www.ngssoftware.com/papers/database-on-xp.pdf
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15452

Scores

EPSS 0.0148
EPSS Percentile 71.3%

Details

Status published
Products (14)
ibm/db2_universal_database 7.1
ibm/db2_universal_database 7.2
ibm/db2_universal_database 8.0
ibm/db2_universal_database 8.1
ibm/db2_universal_database 8.1.4
ibm/db2_universal_database 8.1.5
ibm/db2_universal_database 8.1.6
ibm/db2_universal_database 8.1.6c
ibm/db2_universal_database 8.1.7
ibm/db2_universal_database 8.1.7b
... and 4 more
Published Nov 16, 2005
Tracked Since Feb 18, 2026