Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54828 | IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. |
Solution
A permanent fix for the vulnerability has been released in IBM Informix HQ, included with versions 12.10.xC16W2, 14.10.xC11W1, and also addressed in IBM Informix HQ version 3.0.0. Fixes are available on IBM Fix Central - Select Fixes - Informix Server. Download the latest fix for your product and version to pick up the security patches. Follow the instructions for Database server upgrades in the Informix Servers documentation.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7240777 |
|
Mon, 28 Jul 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 28 Jul 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. | |
| Title | IBM Informix Dynamic Server information disclosure | |
| First Time appeared |
Ibm
Ibm informix Dynamic Server |
|
| Weaknesses | CWE-307 | |
| CPEs | cpe:2.3:a:ibm:informix_dynamic_server:12.10:-:*:*:-:*:*:* cpe:2.3:a:ibm:informix_dynamic_server:14.10:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm informix Dynamic Server |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-07-28T17:19:52.455Z
Reserved: 2024-10-14T12:05:13.492Z
Link: CVE-2024-49342
Updated: 2025-07-28T17:19:42.319Z
Status : Analyzed
Published: 2025-07-28T16:15:24.220
Modified: 2025-08-06T17:13:27.220
Link: CVE-2024-49342
No data.
OpenCVE Enrichment
No data.
EUVD