CVE-2017-1297
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.5%
from disclosure to weapon0 days
Published on NVDJun 27
1st PoCJun 26
exploitation probability
1.5%top 28% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159.
Affected products
IBM · DB2 for Linux, UNIX and Windowspublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/42260unverifiedcve_referencewww.exploit-db.com/exploits/42260/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.