CVE-2024-51464

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Dec 21, 2024
Updated: Dec 31, 2024
CWE ID 288

Summary

CVE-2024-51464 is a newly identified vulnerability affecting IBM i versions 7.3, 7.4, and 7.5. This issue allows authenticated attackers to bypass Navigator for i interface restrictions by sending a carefully crafted request. As a result, they can execute operations that the user is not authorized to perform while using Navigator for i remotely. This vulnerability poses a significant risk to system security and requires immediate attention from IBM i administrators for proper mitigation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share