CVE-2006-5664
published 2006-11-03CVE-2006-5664: The installation script in IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 allows local…
PriorityP411medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.31%
23.3th percentile
The installation script in IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 allows local users to "compromise security" via a symlink attack on temporary files.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | informix_client_sdk | — | — |
| ibm | informix_dynamic_server | — | — |
| ibm | informix_i-connect | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
IBM Informix Dynamic Server 10.00 Installation symlink (XFDB-29297 / SBV-20607)
vuldb·2026-04-26·CVSS 4.6
CVE-2006-5664 [MEDIUM] IBM Informix Dynamic Server 10.00 Installation symlink (XFDB-29297 / SBV-20607)
A vulnerability described as problematic has been identified in IBM Informix Dynamic Server 10.00. This vulnerability affects unknown code of the component Installation. Such manipulation leads to symlink following.
This vulnerability is referenced as CVE-2006-5664. The attack can only be performed from a local environment. No exploit is available.
GHSA
GHSA-wvm9-fj85-3gwq: The installation script in IBM Informix Dynamic Server 10
ghsa_unreviewed·2022-05-01
CVE-2006-5664 [MEDIUM] GHSA-wvm9-fj85-3gwq: The installation script in IBM Informix Dynamic Server 10
The installation script in IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 allows local users to "compromise security" via a symlink attack on temporary files.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/22609http://securitytracker.com/id?1017156http://www-1.ibm.com/support/docview.wss?uid=swg21247438http://www.vupen.com/english/advisories/2006/4280http://secunia.com/advisories/22609http://securitytracker.com/id?1017156http://www-1.ibm.com/support/docview.wss?uid=swg21247438http://www.vupen.com/english/advisories/2006/4280
2006-11-03
Published