IBM DB2 UDB before 8.2 Fixpak 16 does not properly check authorization for the ALTER TABLE statement, which has unknown impact and attack vectors.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT | |
http://secunia.com/advisories/28771 | third party advisory vendor advisory |
http://www.vupen.com/english/advisories/2008/0401 | vdb entry |
http://www-1.ibm.com/support/docview.wss?uid=swg1IZ07337 | vendor advisory |