Total vulnerabilities in the database
The default configuration of Firebird before 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD environment variable before starting Firebird, which allows remote attackers to bypass SYSDBA authentication and obtain sensitive database information via an empty password.
Software | From | Fixed in |
---|---|---|
firebird / firebird | - | 2.0.3.12981.0.x |
firebird / firebird | 2.0.3.12981.0 | 2.0.3.12981.0.x |