CVE-2023-40686: IBM i privilege escalation
Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege escalation vulnerability. A malicious actor with command line access to the operating system can exploit this vulnerability to elevate privileges to gain component access to the operating system. IBM X-Force ID: 264114.
Other sources
Management Central as part of IBM i Navigator contains a local privilege escalation vulnerability. A malicious actor with command line access to the operating system can exploit this vulnerability to elevate privileges to gain component access to the operating system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for the IBM i privilege escalation vulnerability?
The vulnerability ID for the IBM i privilege escalation vulnerability is CVE-2023-40686.
What is the severity level of CVE-2023-40686?
The severity level of CVE-2023-40686 is medium.
How does the IBM i privilege escalation vulnerability affect IBM i versions 7.2, 7.3, 7.4, and 7.5?
The IBM i privilege escalation vulnerability affects IBM i versions 7.2, 7.3, 7.4, and 7.5, allowing a malicious actor with command line access to elevate privileges.
What is the Common Weakness Enumeration (CWE) ID for the IBM i privilege escalation vulnerability?
The Common Weakness Enumeration (CWE) ID for the IBM i privilege escalation vulnerability is CWE-269.
How can the IBM i privilege escalation vulnerability be fixed?
To fix the IBM i privilege escalation vulnerability, apply the necessary security patches or updates provided by IBM.