CVE-2023-47741
- EPSS 0.33%
- Veröffentlicht 18.12.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 08:30:44
IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser memory that can be viewed using common browser tools before the memory is garbage collected. A malicious actor with access to the v...
CVE-2023-42006
- EPSS 0.21%
- Veröffentlicht 01.12.2023 17:15:07
- Zuletzt bearbeitet 21.11.2024 08:22:05
IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information caused by improper authority checks. IBM X-Force ID: 265266.
CVE-2023-30988
- EPSS 0.17%
- Veröffentlicht 16.07.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 08:01:11
The IBM i 7.2, 7.3, 7.4, and 7.5 product Facsimile Support for i contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain root access to the host oper...
CVE-2023-30989
- EPSS 0.17%
- Veröffentlicht 16.07.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 08:01:11
IBM Performance Tools for i 7.2, 7.3, 7.4, and 7.5 contains a local privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain all object access to the host operating sy...
CVE-2023-30990
- EPSS 1.01%
- Veröffentlicht 04.07.2023 00:15:09
- Zuletzt bearbeitet 21.11.2024 08:01:11
IBM i 7.2, 7.3, 7.4, and 7.5 could allow a remote attacker to execute CL commands as QUSER, caused by an exploitation of DDM architecture. IBM X-Force ID: 254036.