cbcvebase.
CVE-2009-4333
published 2009-12-16

CVE-2009-4333: The Relational Data Services component in IBM DB2 9.5 before FP5 allows attackers to obtain the password argument from the SET ENCRYPTION PASSWORD statement…

PriorityP335high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.33%
67.8th percentile
The Relational Data Services component in IBM DB2 9.5 before FP5 allows attackers to obtain the password argument from the SET ENCRYPTION PASSWORD statement via vectors involving the GET SNAPSHOT FOR DYNAMIC SQL command.

Affected

1 ranges
VendorProductVersion rangeFixed in
ibmdb2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.