IBM Informix Dynamic Server
cpe:2.3:a:ibm:informix_dynamic_server:*:*:*:*:*:*:*
- 14.10
A vulnerability in IBM Informix Dynamic Server 14.10 on Windows allows local users to log into the Informix server as an administrator without a password. This issue arises because the database access tool, DB-Access, permits users to connect as another user without authentication, bypassing the intended password requirement.
Exploitation of this vulnerability could lead to unauthorized access to the Informix server with administrative privileges.
Users can update to IBM Informix Dynamic Server 14.10.xC11W1. The update is available through IBM Fix Central. Follow the instructions for database server upgrades in the Informix Servers documentation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.