ID

VAR-E-200712-0533


CVE

cve_id:CVE-2007-6334

Trust: 0.3

sources: BID: 26959

TITLE

Ingres Flawed In User Authentication Unauthorized Access Vulnerability

Trust: 0.3

sources: BID: 26959

DESCRIPTION

Ingres is prone to an unauthorized-access security vulnerability because of a flaw in user authentication.
Attackers can exploit this issue to gain unauthorized access to the affected database. Successful exploits can allow attackers to access, create, or modify data; other attacks are possible.
This issue affects Ingres 2.5 and 2.6 when running on Windows.
NOTE: This issue does not affect the Ingres .NET data provider.

Trust: 0.3

sources: BID: 26959

AFFECTED PRODUCTS

vendor:computermodel:associates unicenter network and systems managementscope:eqversion:3.1

Trust: 0.6

vendor:computermodel:associates unicenter network and systems managementscope:eqversion:3.0

Trust: 0.6

vendor:ingresmodel:databasescope:eqversion:2.6

Trust: 0.3

vendor:ingresmodel:databasescope:eqversion:2.5

Trust: 0.3

vendor:computermodel:associates wily soa managerscope:eqversion:7.1

Trust: 0.3

vendor:computermodel:associates web service distributed managementscope:eqversion:3.50

Trust: 0.3

vendor:computermodel:associates web service distributed managementscope:eqversion:3.11

Trust: 0.3

vendor:computermodel:associates unicenter workload control center 1.0.sp4scope: - version: -

Trust: 0.3

vendor:computermodel:associates unicenter workload control center sp4scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter workload control center sp3scope:eqversion:1

Trust: 0.3

vendor:computermodel:associates unicenter tngscope:eqversion:2.5

Trust: 0.3

vendor:computermodel:associates unicenter tngscope:eqversion:2.4.2

Trust: 0.3

vendor:computermodel:associates unicenter tngscope:eqversion:2.4

Trust: 0.3

vendor:computermodel:associates unicenter tngscope:eqversion:2.2

Trust: 0.3

vendor:computermodel:associates unicenter tngscope:eqversion:2.1

Trust: 0.3

vendor:computermodel:associates unicenter tng 2.4.2jscope: - version: -

Trust: 0.3

vendor:computermodel:associates unicenter software deliveryscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:6.0.1

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:6.0

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:5.5.1

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:5.5

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service desk sp1scope:eqversion:6.0

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service desk sp3scope:eqversion:5.5

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:11.2

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter serviceplus service deskscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter service metric analysisscope:eqversion:3.5

Trust: 0.3

vendor:computermodel:associates unicenter service metric analysisscope:eqversion:3.0.2

Trust: 0.3

vendor:computermodel:associates unicenter service metric analysisscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter service metric analysisscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter service intelligencescope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter service deliveryscope:eqversion:11.0

Trust: 0.3

vendor:computermodel:associates unicenter service deliveryscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter service catalogscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter service catalogscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter service assurescope:eqversion:2.2

Trust: 0.3

vendor:computermodel:associates unicenter service assurescope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter service assurescope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter service accountingscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter service accountingscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter remote control sp1scope:eqversion:6.0

Trust: 0.3

vendor:computermodel:associates unicenter remote controlscope:eqversion:6.0

Trust: 0.3

vendor:computermodel:associates unicenter remote controlscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter patch managementscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter network and systems managementscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter network and systems managementscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter management portalscope:eqversion:3.1.1

Trust: 0.3

vendor:computermodel:associates unicenter management portalscope:eqversion:3.1

Trust: 0.3

vendor:computermodel:associates unicenter lightweight portalscope:eqversion:2

Trust: 0.3

vendor:computermodel:associates unicenter job management optionscope:eqversion:11.0

Trust: 0.3

vendor:computermodel:associates unicenter enterprise job manager sp2scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter enterprise job manager sp1scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter enterprise job manager sp4scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter enterprise job manager sp3scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter enterprise job managerscope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates unicenter desktop management suitescope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter desktop and server managementscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter database command centerscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates unicenter ca web services distributed managementscope:eqversion:11.0

Trust: 0.3

vendor:computermodel:associates unicenter ca web services distributed managementscope:eqversion:3.5

Trust: 0.3

vendor:computermodel:associates unicenter ca web services distributed managementscope:eqversion:3.11

Trust: 0.3

vendor:computermodel:associates unicenter ca web services distributed managementscope:eqversion:3.1

Trust: 0.3

vendor:computermodel:associates unicenter asset portfolio managementscope:eqversion:11.2.1

Trust: 0.3

vendor:computermodel:associates unicenter asset portfolio managementscope:eqversion:11.0

Trust: 0.3

vendor:computermodel:associates unicenter asset portfolio managementscope:eqversion:11.3

Trust: 0.3

vendor:computermodel:associates unicenter asset managementscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenter asset intelligencescope:eqversion:11

Trust: 0.3

vendor:computermodel:associates unicenterscope: - version: -

Trust: 0.3

vendor:computermodel:associates etrust web access controlscope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates etrust single sign-onscope:eqversion:7

Trust: 0.3

vendor:computermodel:associates etrust secure content managerscope:eqversion:8.0

Trust: 0.3

vendor:computermodel:associates etrust secure content managerscope:eqversion:1.1

Trust: 0.3

vendor:computermodel:associates etrust secure content manager sp1scope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates etrust secure content managerscope:eqversion:1.0

Trust: 0.3

vendor:computermodel:associates etrust identity managerscope:eqversion:8.1

Trust: 0.3

vendor:computermodel:associates etrust iam suitescope:eqversion:8

Trust: 0.3

vendor:computermodel:associates etrust directoryscope:eqversion:8.1

Trust: 0.3

vendor:computermodel:associates etrust audit sp2scope:eqversion:8

Trust: 0.3

vendor:computermodel:associates etrust admin sp2scope:eqversion:8.1.2

Trust: 0.3

vendor:computermodel:associates etrust admin sp2scope:eqversion:8.1.1

Trust: 0.3

vendor:computermodel:associates etrust adminscope:eqversion:8.1

Trust: 0.3

vendor:computermodel:associates etrust adminscope:eqversion:8.0

Trust: 0.3

vendor:computermodel:associates etrust admin sp2scope:eqversion:8.1

Trust: 0.3

vendor:computermodel:associates etrust admin sp1scope:eqversion:8.1

Trust: 0.3

vendor:computermodel:associates cleverpath predictive analysis serverscope:eqversion:3.0

Trust: 0.3

vendor:computermodel:associates cleverpath aionscope:eqversion:10.0

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backup sp2scope:eqversion:11.5.2

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:9.1

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:9.01

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backup 11.5.sp3scope: - version: -

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backup 11.5.sp2scope: - version: -

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backup 11.5.sp1scope: - version: -

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:11.5

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:11

Trust: 0.3

vendor:computermodel:associates brightstor arcserve backupscope:eqversion:10.5

Trust: 0.3

vendor:computermodel:associates arcserve backupscope:eqversion:11.1

Trust: 0.3

vendor:computermodel:associates allfusion harvest change managerscope:eqversion:7.1

Trust: 0.3

vendor:computermodel:associates allfusion harvest change managerscope:eqversion:7

Trust: 0.3

vendor:computermodel:associates allfusion enterprise workbenchscope:eqversion:7.1

Trust: 0.3

vendor:computermodel:associates allfusion enterprise workbenchscope:eqversion:7

Trust: 0.3

vendor:computermodel:associates allfusion enterprise workbench sp1scope:eqversion:1.1

Trust: 0.3

vendor:computermodel:associates allfusion enterprise workbenchscope:eqversion:1.1

Trust: 0.3

vendor:computermodel:associates advantage plex for distributed systemsscope:eqversion:5.5

Trust: 0.3

vendor:computermodel:associates advantage data transformerscope:eqversion:2.2

Trust: 0.3

sources: BID: 26959

EXPLOIT

No specific exploit code is required to leverage this issue. An attacker connects to an affected server after another user has connected.

Trust: 0.3

sources: BID: 26959

PRICE

Free

Trust: 0.3

sources: BID: 26959

TYPE

Access Validation Error

Trust: 0.3

sources: BID: 26959

CREDITS

The vendor disclosed this issue.

Trust: 0.3

sources: BID: 26959

EXTERNAL IDS

db:NVDid:CVE-2007-6334

Trust: 0.3

db:BIDid:26959

Trust: 0.3

sources: BID: 26959

REFERENCES

url:http://servicedesk.ingres.com/caisd/pdmweb.ingres?op=show_detail+persid=kd:415703+htmpl=kt_document_view.htmpl

Trust: 0.3

url:http://www.ingres.com/

Trust: 0.3

url:http://www.ingres.com/support/security-alertdec17.php

Trust: 0.3

url:http://supportconnectw.ca.com/public/ingres/infodocs/ingresmswin-secnot.asp

Trust: 0.3

sources: BID: 26959

SOURCES

db:BIDid:26959

LAST UPDATE DATE

2022-07-27T09:34:00.386000+00:00


SOURCES UPDATE DATE

db:BIDid:26959date:2015-03-19T09:28:00

SOURCES RELEASE DATE

db:BIDid:26959date:2007-12-20T00:00:00