First published: Mon Dec 02 2024(Updated: )
IBM Robotic Process Automation 21.0.0 through 21.0.7.17 and 23.0.0 through 23.0.18 could allow a local user to escalate their privileges. All files in the install inherit the file permissions of the parent directory and therefore a non-privileged user can substitute any executable for the nssm.exe service. A subsequent service or server restart will then run that binary with administrator privilege.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
<=21.0.0 - 21.0.7.17, 23.0.0 - 23.0.18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-51448 has been rated as a medium severity vulnerability due to its potential to allow local privilege escalation.
To mitigate CVE-2024-51448, ensure that file permissions are correctly configured to prevent non-privileged users from altering executable files.
CVE-2024-51448 affects IBM Robotic Process Automation versions from 21.0.0 to 21.0.7.17 and from 23.0.0 to 23.0.18.
The impact of CVE-2024-51448 is that it allows a non-privileged user to potentially escalate their privileges through improper file permissions.
CVE-2024-51448 can be exploited by local users rather than remote users, as it requires local access to the system.