CVE-2012-0200

IBM solidDB < 6.5.0.8 - Authenticated Denial of Service via SELECT Statement with Redundant WHERE Condition

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2012-0200. PoCs published by IBM.

AI-analyzed exploit summary The exploit demonstrates a denial-of-service vulnerability in IBM solidDB by executing a specific SQL query that crashes the application. The query involves a malformed WHERE clause with conflicting conditions, triggering the vulnerability.

Description

The server in IBM solidDB 6.5 before Interim Fix 6 does not properly initialize data structures, which allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a redundant WHERE condition.

Exploits (1)

exploitdb WORKING POC VERIFIED
by IBM · textdosmultiple
https://www.exploit-db.com/exploits/36869

The exploit demonstrates a denial-of-service vulnerability in IBM solidDB by executing a specific SQL query that crashes the application. The query involves a malformed WHERE clause with conflicting conditions, triggering the vulnerability.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: IBM solidDB versions prior to 6.5.0.8 Interim Fix 6
No auth needed
Prerequisites: Access to the IBM solidDB instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/73126
Various Sources x_refsource_confirm
http://www.ibm.com/support/docview.wss?uid=swg27021052
Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IC81244

Scores

EPSS 0.0579
EPSS Percentile 92.1%

Details

Status published
Products (9)
ibm/soliddb 6.5.0.0
ibm/soliddb 6.5.0.1
ibm/soliddb 6.5.0.2
ibm/soliddb 6.5.0.3
ibm/soliddb 6.5.0.4
ibm/soliddb 6.5.0.5
ibm/soliddb 6.5.0.6
ibm/soliddb 6.5.0.7
ibm/soliddb < 6.5.0.8
Published Feb 21, 2012
Tracked Since Feb 18, 2026