CVE-2024-51464

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Dec 21, 2024
Updated: Dec 31, 2024
CWE ID 288

Summary

CVE-2024-51464 is a newly disclosed vulnerability affecting IBM i versions 7.3, 7.4, and 7.5. maliciously crafted requests can bypass Navigator for i interface restrictions, enabling authenticated attackers to execute unauthorized operations remotely. This issue poses a significant security risk, allowing attackers to perform actions they should not have access to while using Navigator for i. IBM urges users to apply the available security patches as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share