Vulnerability Name: | CVE-2005-3642 (CCN-23104) | ||||||||
Assigned: | 2005-11-16 | ||||||||
Published: | 2005-11-16 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | IBM Informix Dynamic Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account by supplying an invalid username. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 5.4 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:W/RC:UC)
5.4 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:W/RC:UC)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-3641 Source: MITRE Type: CNA CVE-2005-3642 Source: MITRE Type: CNA CVE-2005-3643 Source: CCN Type: Neohapsis Archives Message #0212 Database servers on XP and the curious flaw Source: MISC Type: Vendor Advisory http://www.ngssoftware.com/papers/database-on-xp.pdf Source: CCN Type: OSVDB ID: 31153 IBM DB2 on XP with Simple File Sharing Guest Account Authentication Bypass Source: CCN Type: OSVDB ID: 31154 IBM Informix Dynamic Server on XP with Simple File Sharing Guest Account Authentication Bypass Source: CCN Type: OSVDB ID: 31155 Oracle on XP with Simple File Sharing Username Account Authentication Bypass Source: CCN Type: BID-15450 Oracle Database Windows XP Simple File Sharing Authentication Bypass Vulnerability Source: BID Type: UNKNOWN 15451 Source: CCN Type: BID-15451 IBM Informix Dynamic Server Windows XP Simple File Sharing Authentication Bypass Vulnerability Source: CCN Type: BID-15452 IBM DB2 Windows XP Simple File Sharing Authentication Bypass Vulnerability Source: XF Type: UNKNOWN multiple-databases-guest-gain-access(23104) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |