Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2012-0200

6 documents5 sources
Severity
4.0MEDIUM
EPSS
7.5%
top 8.20%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedFeb 21
Latest updateMay 4

Description

The server in IBM solidDB 6.5 before Interim Fix 6 does not properly initialize data structures, which allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a redundant WHERE condition.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

NVDibm/soliddb6.5.0.8+8

🔴Vulnerability Details

2
GHSA
GHSA-68x9-9q57-fggr: The server in IBM solidDB 62022-05-04
CVEList
CVE-2012-0200: The server in IBM solidDB 62012-02-21

💥Exploits & PoCs

1
Exploit-DB
IBM solidDB 6.5.0.8 - 'SELECT' Statement 'WHERE' Condition Denial of Service2012-02-09

💬Community

1
Bugzilla
CVE-2012-0058 kernel: Unused iocbs in a batch should not be accounted as active2012-01-18
CVE-2012-0200 (MEDIUM CVSS 4) | The server in IBM solidDB 6.5 befor | cvebase.io