CVE-2024-45675
8.4IBM · Informix Dynamic Server
IBM Informix Dynamic Server 14.10 contains a local authentication flaw that allows unauthorized administrative access.
Executive summary
A critical authentication bypass vulnerability in IBM Informix Dynamic Server 14.10 on Windows allows local users to gain administrative privileges without a password.
Vulnerability
This vulnerability, classified under CWE-309, allows a local user to authenticate as an administrator without providing a password. The flaw specifically affects deployments on the Windows platform.
Business impact
The ability for a local user to bypass authentication and obtain administrative rights presents a severe risk to data integrity and system availability. Given the CVSS score of 8.4, this vulnerability could lead to total compromise of the database server, enabling unauthorized data exfiltration, modification, or complete system takeover. Organizations relying on Informix for critical business operations should treat this as a high priority threat.
Remediation
Immediate Action: Update the affected Informix Server instance to version 14.10.xC11W1, which is available via the IBM Fix Central portal.
Proactive Monitoring: Review system logs for unusual administrative login attempts or unauthorized modifications to database configurations performed by non-privileged accounts.
Compensating Controls: Restrict local access to the server host to authorized personnel only, and implement strict file system permissions to prevent untrusted users from interacting with the Informix binary environment.
Exploitation status
Public Exploit Available: No
Analyst recommendation
The severity of this flaw necessitates immediate attention, particularly for environments where multiple users share local access to the hosting server. Administrators should verify their current version string and apply the 14.10.xC11W1 update as soon as possible to neutralize the risk of unauthorized administrative access.