MidnightBSD

Advisories for borland_software

CVE-2000-0866 LOW

Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes.

CVSS 2.0

Severity: LOW

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase_superserver 6.0
CVE-2001-0008 HIGH

Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
firebirdsql firebird *
borland_software interbase 6.0
borland_software interbase 5.0
borland_software interbase 4.0
CVE-2002-1514 HIGH

gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the xinetdbd file.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 6.5
borland_software interbase 6.0
borland_software interbase 4.0
borland_software interbase 5.0
CVE-2002-2087 MEDIUM

Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_drop, (2) gds_lock_mgr, or (3) gds_inet_server.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 6.0
CVE-2003-0197 HIGH

Buffer overflow gds_lock_mgr of Interbase Database 6.x allows local users to gain privileges via a long ISC_LOCK_ENV environment variable (INTERBASE_LOCK).

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 6.5
borland_software interbase 6.4
borland_software interbase 6.0
firebirdsql firebird 1.0.2
CVE-2004-0204 HIGH

Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Microsoft Business Solutions CRM 1.2, and other products, allows remote attackers to read and delete arbitrary files via ".." sequences in the dynamicimag argument to crystalimagehandler.aspx.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
businessobjects crystal_reports 10
businessobjects crystal_enterprise 9
businessobjects crystal_reports 9
microsoft visual_studio_.net 2003
businessobjects crystal_enterprise_ras 8.5
businessobjects crystal_enterprise 10
microsoft outlook 2003
bea weblogic_server 8.1
microsoft business_solutions_crm 1.2
borland_software j_builder *
businessobjects crystal_enterprise_java_sdk 8.5
CVE-2004-1833 HIGH

The admin.ib file in Borland Interbase 7.1 for Linux has default world writable permissions, which allows local users to gain database administrative privileges.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 7.0
borland_software interbase 6.5
borland_software interbase 6.4
borland_software interbase 7.1
borland_software interbase 6.0
borland_software interbase 5.0
borland_software interbase 4.0
CVE-2004-2043 MEDIUM

Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a denial of service (crash) via a long database name, as demonstrated using the gsec command.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 7.0
borland_software interbase 6.5
borland_software interbase 6.4
borland_software interbase 7.1
borland_software interbase_superserver 6.0
borland_software interbase 6.0
firebirdsql firebird 1.0
borland_software interbase 4.0
borland_software interbase 5.0
CVE-2004-2121 MEDIUM

Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot "......" sequences, or (2) "%5c%2e%2e" (encoded "\..") sequences, in the URL.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software web_server_for_corel_paradox *
CVE-2006-0634 MEDIUM

Borland C++Builder 6 (BCB6) with Update Pack 4 Enterprise edition (ent_upd4) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities into applications that could be exploited by context-dependent attackers.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software c++_builder 6
CVE-2006-6201 HIGH

Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remote attackers to execute arbitrary code via a long SQL statement, related to use of the DbiQExec function.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software c_builder 2006
revilloc mailserver *
borland_software idsql32.dll 5.1.0.2
borland_software c++_builder 6.x
borland_software delphi 6.x
borland_software c++_builder 2006
borland_software c++_builder 5.x
borland_software developer_studio 2006
borland_software delphi 2006
borland_software delphi 7.x
borland_software delphi 5.x
borland_software idsql32.dll 5.1.0.4
CVE-2007-3566 HIGH

Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote attackers to execute arbitrary code via a long size value in a create request to port 3050/tcp.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
borland_software interbase 2007
CVE-2007-5243 HIGH

Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the (a) SVC_attach or (b) INET_connect function, (2) a long create request on TCP port 3050 to the (c) isc_create_database or (d) jrd8_create_database function, (3) a long attach request on TCP port 3050 to the (e) isc_attach_database or (f) PWD_db_aliased function, or unspecified vectors involving the (4) jrd8_attach_database or (5) expand_filename2 function.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-119,

Products Affected

Vendor Product Version
borland_software interbase li_8.0.0.53
borland_software interbase wi-v5.5.0.742
borland_software interbase wi-o6.0.2.0
borland_software interbase wi-v7.5.1.80
borland_software interbase li_8.0.0.253
borland_software interbase wi_5.1.1.680
borland_software interbase wi-v7.5.0.129
borland_software interbase li_8.0.0.54
borland_software interbase wi-v6.0.1.6
borland_software interbase wi-v8.0.0.123
borland_software interbase wi-o6.0.1.6
borland_software interbase wi-v6.5.0.28
borland_software interbase wi-v6.0.0.627
borland_software interbase wi-v7.0.1.1
borland_software interbase wi-v5.1.1.680
borland_software interbase wi-v6.0.1.0
borland_software interbase wi_8.1.0.257
CVE-2007-5244 HIGH

Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-119,

Products Affected

Vendor Product Version
borland_software interbase li_8.0.0.53
borland_software interbase li_8.0.0.253
borland_software interbase li_8.0.0.54