CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

ibm

informix_dynamic_server

18 known vulnerabilities · sorted by CVSS score

CVE-2024-45675
HIGH8.4

IBM Informix Dynamic Server 14.10 could allow a local user on the system to log into the Informix server as administrator without a password.

ibm / informix_dynamic_server
Local
Published Dec 2, 2025
CVE-2023-28523
HIGH8.4

IBM Informix Dynamic Server 12.10 and 14.10 onsmsync is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow an attacker to execute arbitrary code. IBM X-Force ID: 250753.

ibm / informix_dynamic_server+2
Local
Published Dec 9, 2023
CVE-2018-1796
HIGH7.8

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user to load malicious libraries and gain root privileges. IBM X-Force ID: 149426.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2020-4799
HIGH7.8

IBM Informix spatial 14.10 could allow a local user to execute commands as a privileged user due to an out of bounds write vulnerability. IBM X-Force ID: 189460.

ibm / informix_dynamic_server
Local
Published Oct 8, 2020
CVE-2019-4253
HIGH7.8

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local privileged Informix user to load a malicious shared library and gain root access privileges. IBM X-Force ID: 159941.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2024-49342
HIGH7.5

IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

ibm / informix_dynamic_server+1
Network
Published Jul 28, 2025
CVE-2025-1991
HIGH7.5

IBM Informix Dynamic Server 12.10,14.10, and15.0 could allow a remote attacker to cause a denial of service due to an integer underflow when processing packets.

ibm / informix_dynamic_server+2
Network
Published Jun 28, 2025
CVE-2018-1636
MEDIUM6.7

Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated user to execute predefined code with root privileges, such as escalating to a root shell. IBM X-Force ID: 144441.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2018-1630
MEDIUM6.7

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onmode. IBM X-Force ID: 144430.

ibm / informix_dynamic_server
Local
Published Aug 20, 2019
CVE-2021-20515
MEDIUM6.7

IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A local privileged user could overflow a buffer and execute arbitrary code on the system or cause a denial of service condition. IBM X-Force ID: 198366.

ibm / informix_dynamic_server
Local
Published Apr 30, 2021
CVE-2018-1632
MEDIUM6.7

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in .infxdirs. IBM X-Force ID: 144432.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2018-1631
MEDIUM6.7

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in oninit mongohash. IBM X-Force ID: 144431.

ibm / informix_dynamic_server
Local
Published Aug 20, 2019
CVE-2018-1635
MEDIUM6.7

Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated user to execute predefined code with root privileges, such as escalating to a root shell. IBM X-Force ID: 144439.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2018-1633
MEDIUM6.7

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onsrvapd. IBM X-Force ID: 144434.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2018-1634
MEDIUM6.7

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in infos.DBSERVERNAME. IBM X-Force ID: 144437.

ibm / informix_dynamic_server+11
Local
Published Aug 20, 2019
CVE-2023-28527
MEDIUM6.2

IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow a local user to cause a segmentation fault. IBM X-Force ID: 251206.

ibm / informix_dynamic_server+2
Local
Published Dec 9, 2023
CVE-2023-28526
MEDIUM6.2

IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow a local user to cause a segmentation fault. IBM X-Force ID: 251204.

ibm / informix_dynamic_server+2
Local
Published Dec 9, 2023
CVE-2024-49343
MEDIUM5.4

IBM Informix Dynamic Server 12.10 and 14.10 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.

ibm / informix_dynamic_server+1
Network
Published Jul 28, 2025