VYPR

U2 Universe

Sign in to watch

by IBM

CVEs (4)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2003-0578Hig0.517.80.00Aug 18, 2003cci_dir in IBM U2 UniVerse 10.0.0.9 and earlier creates hard links and unlinks files as root, which allows local users to gain privileges by deleting and overwriting arbitrary files.
CVE-2003-05790.030.00Aug 18, 2003uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier trusts the user-supplied -uv.install command line option to find and execute the uv.install program, which allows local users to gain privileges by providing a pathname that is under control of the user.
CVE-2003-05800.000.00Aug 18, 2003Buffer overflow in uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier allows the uvadm user to execute arbitrary code via a long -uv.install command line argument.
CVE-2002-14500.000.01Jul 31, 2002IBM UniVerse with UV/ODBC allows attackers to cause a denial of service (client crash or server CPU consumption) via a query with an invalid link between tables, possibly via a buffer overflow.