Show filters
114 Total Results
Displaying 11-20 of 114
Sort by:
Attacker Value
Unknown

CVE-2024-22346

Disclosure Date: March 14, 2024 (last updated April 01, 2024)
Db2 for IBM i 7.2, 7.3, 7.4, and 7.5 infrastructure could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege. IBM X-Force ID: 280203.
Attacker Value
Unknown

CVE-2023-43064

Disclosure Date: December 25, 2023 (last updated January 04, 2024)
Facsimile Support for IBM i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause arbitrary code to run with the privilege of the user invoking the facsimile support. IBM X-Force ID: 267689.
Attacker Value
Unknown

CVE-2023-47741

Disclosure Date: December 18, 2023 (last updated December 23, 2023)
IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser memory that can be viewed using common browser tools before the memory is garbage collected. A malicious actor with access to the victim's PC could exploit this vulnerability to gain access to the IBM i operating system. IBM X-Force ID: 272532.
Attacker Value
Unknown

CVE-2023-42006

Disclosure Date: December 01, 2023 (last updated December 07, 2023)
IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information caused by improper authority checks. IBM X-Force ID: 265266.
Attacker Value
Unknown

CVE-2023-40685

Disclosure Date: October 29, 2023 (last updated November 08, 2023)
Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege escalation vulnerability. A malicious actor with command line access to the operating system can exploit this vulnerability to elevate privileges to gain root access to the operating system. IBM X-Force ID: 264116.
Attacker Value
Unknown

CVE-2023-40686

Disclosure Date: October 29, 2023 (last updated November 08, 2023)
Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege escalation vulnerability. A malicious actor with command line access to the operating system can exploit this vulnerability to elevate privileges to gain component access to the operating system. IBM X-Force ID: 264114.
Attacker Value
Unknown

CVE-2023-40377

Disclosure Date: October 16, 2023 (last updated October 20, 2023)
Backup, Recovery, and Media Services (BRMS) for IBM i 7.2, 7.3, and 7.4 contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain component access to the host operating system. IBM X-Force ID: 263583.
Attacker Value
Unknown

CVE-2023-40378

Disclosure Date: October 15, 2023 (last updated October 19, 2023)
IBM Directory Server for IBM i contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain component access to the host operating system. IBM X-Force ID: 263584.
Attacker Value
Unknown

CVE-2023-40375

Disclosure Date: September 28, 2023 (last updated October 08, 2023)
Integrated application server for IBM i 7.2, 7.3, 7.4, and 7.5 contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain root access to the host operating system. IBM X-Force ID: 263580.
Attacker Value
Unknown

CVE-2023-38721

Disclosure Date: August 14, 2023 (last updated October 08, 2023)
The IBM i 7.2, 7.3, 7.4, and 7.5 product Facsimile Support for i contains a local privilege escalation vulnerability. A malicious actor could gain access to a command line with elevated privileges allowing root access to the host operating system. IBM X-Force ID: 262173.