mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
107 lines
3.5 KiB
JSON
107 lines
3.5 KiB
JSON
{
|
|
"impact": {
|
|
"cvssv3": {
|
|
"BM": {
|
|
"UI": "N",
|
|
"A": "N",
|
|
"SCORE": "5.900",
|
|
"AC": "H",
|
|
"I": "N",
|
|
"PR": "N",
|
|
"S": "U",
|
|
"AV": "N",
|
|
"C": "H"
|
|
},
|
|
"TM": {
|
|
"RL": "O",
|
|
"RC": "C",
|
|
"E": "U"
|
|
}
|
|
}
|
|
},
|
|
"data_version": "4.0",
|
|
"data_format": "MITRE",
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "IBM",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "10.5"
|
|
},
|
|
{
|
|
"version_value": "10.1"
|
|
},
|
|
{
|
|
"version_value": "9.7"
|
|
},
|
|
{
|
|
"version_value": "11.1"
|
|
},
|
|
{
|
|
"version_value": "11.5"
|
|
}
|
|
]
|
|
},
|
|
"product_name": "DB2 for Linux, UNIX and Windows"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_type": "CVE",
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Obtain Information"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"CVE_data_meta": {
|
|
"STATE": "PUBLIC",
|
|
"DATE_PUBLIC": "2021-12-08T00:00:00",
|
|
"ASSIGNER": "psirt@us.ibm.com",
|
|
"ID": "CVE-2021-20373"
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"title": "IBM Security Bulletin 6523804 (DB2 for Linux, UNIX and Windows)",
|
|
"name": "https://www.ibm.com/support/pages/node/6523804",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://www.ibm.com/support/pages/node/6523804"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/195521",
|
|
"refsource": "XF",
|
|
"name": "ibm-db2-cve202120373-info-disc (195521)",
|
|
"title": "X-Force Vulnerability Report"
|
|
},
|
|
{
|
|
"refsource": "CONFIRM",
|
|
"name": "https://security.netapp.com/advisory/ntap-20220225-0005/",
|
|
"url": "https://security.netapp.com/advisory/ntap-20220225-0005/"
|
|
}
|
|
]
|
|
},
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "IBM Db2 9.7, 10.1, 10.5, 11.1, and 11.5 may be vulnerable to an Information Disclosure when using the LOAD utility as under certain circumstances the LOAD utility does not enforce directory restrictions. IBM X-Force ID: 199521."
|
|
}
|
|
]
|
|
}
|
|
} |