Security Advisory

CVE-2004-2489

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-10-25 04:00:00
Last updated 2024-08-08 01:29:13
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Format string vulnerability in IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to execute arbitrary code via a modified INFORMIXDIR environment variable that points to a file with format string specifiers in the filename.