IBM Informix Dynamic Server 14.10 could allow a local user on the system to log into the Informix server as administrator without a password.
Advisories

No advisories yet.

Fixes

Solution

Remediation/Fixes Impact is limited to Informix Server on Windows. No exploitation has been observed or is possible on non‑Windows platforms. Update to IBM Informix Dynamic Server 14.10.xC11W1. Fix is available on IBM Fix Central - Select Fixes - Informix Server . Follow the instructions for Database server upgrades in the Informix Servers documentation Follow the instructions to install or upgrade Informix in the What's new and changed in Informix in the IBM Cloud Pak for Data documentation.


Workaround

No workaround given by the vendor.

History

Tue, 02 Dec 2025 02:30:00 +0000

Type Values Removed Values Added
Description IBM Informix Dynamic Server 14.10 could allow a local user on the system to log into the Informix server as administrator without a password.
Title IBM Informix Dynamic Server Authentication Bypass
First Time appeared Ibm
Ibm informix Dynamic Server
Weaknesses CWE-309
CPEs cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm informix Dynamic Server
References
Metrics cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2025-12-02T02:00:26.554Z

Reserved: 2024-09-03T13:50:43.964Z

Link: CVE-2024-45675

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-12-02T03:16:14.587

Modified: 2025-12-02T03:16:14.587

Link: CVE-2024-45675

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.