Vulnerability Details CVE-2013-6744
The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 before FP3a on Windows allows remote authenticated users to gain privileges by leveraging the CONNECT privilege and the CREATE_EXTERNAL_ROUTINE authority.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.039
EPSS Ranking 87.6%
CVSS Severity
CVSS v2 Score 8.5
Products affected by CVE-2013-6744
-
-
cpe:2.3:a:ibm:db2:10.1.0.1
-
cpe:2.3:a:ibm:db2:10.1.0.2
-
cpe:2.3:a:ibm:db2:10.1.0.3
-
-
cpe:2.3:a:ibm:db2:10.5.0.1
-
cpe:2.3:a:ibm:db2:10.5.0.2
-
-
-
cpe:2.3:a:ibm:db2:9.7.0.1
-
cpe:2.3:a:ibm:db2:9.7.0.2
-
cpe:2.3:a:ibm:db2:9.7.0.3
-
cpe:2.3:a:ibm:db2:9.7.0.4
-
cpe:2.3:a:ibm:db2:9.7.0.5
-
cpe:2.3:a:ibm:db2:9.7.0.6
-
cpe:2.3:a:ibm:db2:9.7.0.7
-
cpe:2.3:a:ibm:db2:9.7.0.8
-
cpe:2.3:a:ibm:db2:9.7.0.9
-
cpe:2.3:o:microsoft:windows:-
-
cpe:2.3:o:microsoft:windows:1.0
-
cpe:2.3:o:microsoft:windows:2.0
-
cpe:2.3:o:microsoft:windows:2000
-
cpe:2.3:o:microsoft:windows:3.0
-
cpe:2.3:o:microsoft:windows:3.1
-
cpe:2.3:o:microsoft:windows:3.11
-
cpe:2.3:o:microsoft:windows:server_2008
-
cpe:2.3:o:microsoft:windows:vista