CVE-2023-43064

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Dec 25, 2023
Updated: Jan 3, 2024
CWE ID 427

Summary

CVE-2023-43064 is a vulnerability affecting IBM i versions 7.2, 7.3, 7.4, and 7.5. The issue involves unqualified library calls in the Facsimile Support feature, which could allow local users to escalate privileges. A malicious actor could exploit this flaw to execute arbitrary code with the privileges of the invoking user. IBM's X-Force has assigned the ID 267689 to this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM OS/400

Affected Vendors

  • IBM Corporation