CVE-2018-1888: High severity ibm i access vulnerability
An untrusted search path vulnerability in IBM i Access for Windows versions 7.1 and earlier on Windows can allow arbitrary code execution via a Trojan horse DLL in the current working directory, related to use of the LoadLibrary function. IBM X-Force ID: 152079.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1888?
CVE-2018-1888 is considered a high-severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2018-1888?
To fix CVE-2018-1888, upgrade IBM i Access for Windows to a version higher than 7.1.
What causes CVE-2018-1888?
CVE-2018-1888 is caused by an untrusted search path vulnerability related to the use of the LoadLibrary function.
Which versions of IBM i Access for Windows are affected by CVE-2018-1888?
CVE-2018-1888 affects all versions of IBM i Access for Windows up to and including version 7.1.
Can CVE-2018-1888 be exploited remotely?
Yes, CVE-2018-1888 can be exploited remotely if an attacker can place a malicious DLL in the application's working directory.