HIGH
Unspecified vulnerability in the sapdba command in SAP with Informix before 700, and 700 up to patch 100, allows local users to execute arbitrary commands via unknown vectors related to "insecure environment variable" handling
Published May 23, 2006
10.0
HIGHCVSS 2.0
EPSS 3.37%
Description
Unspecified vulnerability in the sapdba command in SAP with Informix before 700, and 700 up to patch 100, allows local users to execute arbitrary commands via unknown vectors related to "insecure environment variable" handling.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (10)
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-May/046130.html mailing-listx_refsource_FULLDISCPatch
- http://secunia.com/advisories/20180 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securityreason.com/securityalert/941 third-party-advisoryx_refsource_SREASON
- http://securitytracker.com/id?1016122 vdb-entryx_refsource_SECTRACK
- http://www.cybsec.com/vuln/CYBSEC_Security_Pre-Advisory_Local_Privilege_Escalation_in_SAP_sapdba_Command.pdf x_refsource_MISCPatch
- http://www.securityfocus.com/archive/1/434534/30/4890/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/18028 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2006/1861 vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-2547 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26526 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://lists.grok.org.uk/pipermail/full-disclosure/2006-May/046130.html | mailing-listx_refsource_FULLDISCPatch | |
| http://secunia.com/advisories/20180 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://securityreason.com/securityalert/941 | third-party-advisoryx_refsource_SREASON | |
| http://securitytracker.com/id?1016122 | vdb-entryx_refsource_SECTRACK | |
| http://www.cybsec.com/vuln/CYBSEC_Security_Pre-Advisory_Local_Privilege_Escalation_in_SAP_sapdba_Command.pdf | x_refsource_MISCPatch | |
| http://www.securityfocus.com/archive/1/434534/30/4890/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/18028 | vdb-entryx_refsource_BID | |
| http://www.vupen.com/english/advisories/2006/1861 | vdb-entryx_refsource_VUPEN | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-2547 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/26526 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 23, 2006
Updated Aug 7, 2024
Reserved May 22, 2006
Link CVE-2006-2547
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-2547 Assigner mitre
Published May 23, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-2547