VYPR
Medium severity6.3NVD Advisory· Published Dec 20, 2023· Updated Jun 17, 2026

CVE-2023-35895

CVE-2023-35895

Description

IBM Informix JDBC Driver 4.10 and 4.50 is susceptible to remote code execution attack via JNDI injection when passing an unchecked argument to a certain API. IBM X-Force ID: 259116.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • IBM/Informix Jdbc2 versions
    cpe:2.3:a:ibm:informix_jdbc:4.10:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ibm:informix_jdbc:4.10:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:informix_jdbc:4.50:*:*:*:*:*:*:*
  • Range: 4.10, 4.50
  • IBM/Informixcpe-rescue
    Range: 4.10, 4.50

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.