CVE-2008-0696

IBM DB2 UDB - Unauthorized ALTER TABLE Statement Execution

Title source: llm
STIX 2.1

Description

IBM DB2 UDB before 8.2 Fixpak 16 does not properly check authorization for the ALTER TABLE statement, which has unknown impact and attack vectors.

References (4)

Core 4
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28771
Various Sources vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=swg1IZ07337
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0401

Scores

EPSS 0.0116
EPSS Percentile 64.0%

Details

CWE
CWE-264
Status published
Products (1)
ibm/db2 8.2_fixpack15
Published Feb 12, 2008
Tracked Since Feb 18, 2026