CVE-2024-51463: IBM i server-side request forgery
IBM i 7.3, 7.4, and 7.5
is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
IBM i is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51463?
CVE-2024-51463 has been assigned a high severity rating due to its potential to allow unauthorized access and network enumeration.
How do I fix CVE-2024-51463?
To fix CVE-2024-51463, apply the latest patches and updates provided by IBM for your specific IBM i version.
What versions of IBM i are affected by CVE-2024-51463?
CVE-2024-51463 affects IBM i versions 7.3, 7.4, and 7.5.
What type of attack is possible through CVE-2024-51463?
CVE-2024-51463 allows an authenticated attacker to perform server-side request forgery (SSRF), which may lead to unauthorized requests being sent from the system.
Can CVE-2024-51463 facilitate other types of attacks?
Yes, CVE-2024-51463 can facilitate network enumeration and potentially other attacks by leveraging SSRF vulnerability.