Borland Software Interbase vulnerabilities
9 known vulnerabilities affecting borland_software/interbase.
Total CVEs
9
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH4MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2007-5243CRITICALCVSS 9.3PoCvli_8.0.0.53vli_8.0.0.54+15 more2007-10-06
CVE-2007-5243 [CRITICAL] CWE-119 CVE-2007-5243: Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the (a) SVC_attach or (b) INET_connect function, (2) a long create request on TCP port 3050 to the (c) isc_create_data
nvd
CVE-2007-5244CRITICALCVSS 9.3PoCvli_8.0.0.53vli_8.0.0.54+1 more2007-10-06
CVE-2007-5244 [CRITICAL] CWE-119 CVE-2007-5244: Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibl
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.
nvd
CVE-2007-3566HIGHCVSS 7.5PoCv20072007-07-26
CVE-2007-3566 [HIGH] CVE-2007-3566: Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote attackers to execute arbitrary code via a long size value in a create request to port 3050/tcp.
nvd
CVE-2004-2043MEDIUMCVSS 5.0PoCv4.0v5.0+5 more2004-05-01
CVE-2004-2043 [MEDIUM] CVE-2004-2043: Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly ot
Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a denial of service (crash) via a long database name, as demonstrated using the gsec command.
nvd
CVE-2004-1833HIGHCVSS 7.5v4.0v5.0+5 more2004-03-20
CVE-2004-1833 [HIGH] CVE-2004-1833: The admin.ib file in Borland Interbase 7.1 for Linux has default world writable permissions, which a
The admin.ib file in Borland Interbase 7.1 for Linux has default world writable permissions, which allows local users to gain database administrative privileges.
nvd
CVE-2003-0197HIGHCVSS 7.2v6.0v6.4+1 more2003-04-11
CVE-2003-0197 [HIGH] CVE-2003-0197: Buffer overflow gds_lock_mgr of Interbase Database 6.x allows local users to gain privileges via a l
Buffer overflow gds_lock_mgr of Interbase Database 6.x allows local users to gain privileges via a long ISC_LOCK_ENV environment variable (INTERBASE_LOCK).
nvd
CVE-2002-1514HIGHCVSS 7.2PoCv4.0v5.0+2 more2003-04-02
CVE-2002-1514 [HIGH] CVE-2002-1514: gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a sy
gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the xinetdbd file.
nvd
CVE-2002-2087MEDIUMCVSS 4.6PoCv6.02002-12-31
CVE-2002-2087 [MEDIUM] CVE-2002-2087: Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INT
Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_drop, (2) gds_lock_mgr, or (3) gds_inet_server.
nvd
CVE-2001-0008CRITICALCVSS 10.0PoCv4.0v5.0+1 more2001-02-12
CVE-2001-0008 [CRITICAL] CVE-2001-0008: Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files u
Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.
nvd