Interbase

Vendor:

First CVE: Feb 12, 2001 · Active for 25 years

9
Total CVEs
More Total CVEs than 86% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 59% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Interbase over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 12, 2001
25 years ago
Most Recent CVE
Oct 6, 2007
6,866 days ago

CVE Severity & Scoring

Interbase9 CVEs
All CVEs352,231 CVEs
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown9 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown9 (100.0%)
User Interaction
None0 (0.0%)
Unknown9 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown9 (100.0%)

Top CVEs

Signals from CVEs in this product scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 before SP2 allows remote attackers to execute arbitrary code via a long size value in a
Jul 26, 20077.572NOYES
Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (
Oct 6, 20079.369NOYES
Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary
Oct 6, 20079.362NOYES
Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.
Feb 12, 200110.044NOYES
Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows remote attackers to cause a
May 1, 20045.027NOYES
gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the
Apr 2, 20037.227NOYES
Buffer overflow in Borland InterBase 6.0 allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_drop, (2) gds_lock_mgr, or (3)
Dec 31, 20024.621NOYES
The admin.ib file in Borland Interbase 7.1 for Linux has default world writable permissions, which allows local users to gain database administrative privileges.
Mar 20, 20047.520NONO
Buffer overflow gds_lock_mgr of Interbase Database 6.x allows local users to gain privileges via a long ISC_LOCK_ENV environment variable (INTERBASE_LOCK).
Apr 11, 20037.218NONO

Exploit Exposure

Signals from CVEs in this product scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
33.3% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
7 CVEs
77.8% of CVEs· 93rd percentile

Social Chatter

Signals from CVEs in this product scope (9 CVEs).

Media Mentions

Signals from CVEs in this product scope (9 CVEs).

Top CNAs Publishing CVEs For Interbase

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
wi-v8.0.0.12319.340.1%01
wi-v7.5.1.8019.340.1%01
wi-v7.5.0.12919.340.1%01
wi-v7.0.1.119.340.1%01
wi-v6.5.0.2819.340.1%01
wi-v6.0.1.619.340.1%01
wi-v6.0.1.019.340.1%01
wi-v6.0.0.62719.340.1%01
wi-v5.5.0.74219.340.1%01
wi-v5.1.1.68019.340.1%01
wi-o6.0.2.019.340.1%01
wi-o6.0.1.619.340.1%01
wi_8.1.0.25719.340.1%01
wi_5.1.1.68019.340.1%01
li_8.0.0.5429.338.8%02
li_8.0.0.5329.338.8%02
li_8.0.0.25329.338.8%02
7.126.37.0%01
7.026.37.0%01
6.546.73.9%02