### [CVE-2018-1452](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1452) ![](https://img.shields.io/static/v1?label=Product&message=DB2%20for%20Linux%2C%20UNIX%20and%20Windows&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=File%20Manipulation&color=brighgreen) ### Description IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 contains a vulnerability that could allow a local user to overwrite arbitrary files owned by the DB2 instance owner. IBM X-Force ID: 140047. ### POC #### Reference - http://www.ibm.com/support/docview.wss?uid=swg22016181 - http://www.ibm.com/support/docview.wss?uid=swg22016181 #### Github No PoCs found on GitHub currently.