- Description
- IBM i 7.4 and 7.5 is vulnerable to an authenticated user gaining elevated privilege to a physical file. A user with authority to a view can alter the based-on physical file security attributes without having object management rights to the physical file. A malicious actor can use the elevated privileges to perform actions restricted by their view privileges.
- Source
- psirt@us.ibm.com
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Primary
- Base score
- 6.8
- Impact score
- 5.2
- Exploitability score
- 1.6
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
- Severity
- MEDIUM
- psirt@us.ibm.com
- CWE-732
- Hype score
- Not currently trending
CVE-2024-47104 Elevated Privilege Vulnerability in IBM i 7.4 and 7.5 Systems IBM i versions 7.4 and 7.5 have a vulnerability. An authenticated user can gain elevated privilege on a physical file. Users with acces... https://t.co/RnoQ8VnXGH
@VulmonFeeds
18 Dec 2024
46 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-47104 IBM i 7.4 and 7.5 is vulnerable to an authenticated user gaining elevated privilege to a physical file. A user with authority to a view can alter the based-on physica… https://t.co/I0mz7zOGZY
@CVEnew
18 Dec 2024
391 Impressions
1 Retweet
1 Like
0 Bookmarks
0 Replies
0 Quotes