CVE-2024-51464: IBM i authentication bypass
IBM i 7.3, 7.4, and 7.5 is vulnerable to bypassing Navigator for i interface restrictions. By sending a specially crafted request, an authenticated attacker could exploit this vulnerability to remotely perform operations that the user is not allowed to perform when using Navigator for i.
Other sources
IBM i is vulnerable to bypassing Navigator for i interface restrictions. By sending a specially crafted request, an authenticated attacker could exploit this vulnerability to remotely perform operations that the user is not allowed to perform when using Navigator for i.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51464?
CVE-2024-51464 has a critical severity rating due to its potential for unauthorized remote operations.
How do I fix CVE-2024-51464?
To mitigate CVE-2024-51464, update your IBM i systems to the latest version provided by IBM.
Who is affected by CVE-2024-51464?
CVE-2024-51464 affects users of IBM i versions 7.3, 7.4, and 7.5.
What type of attack does CVE-2024-51464 exploit?
CVE-2024-51464 exploits vulnerable interface restrictions through specially crafted requests.
What are the possible implications of CVE-2024-51464?
Successful exploitation of CVE-2024-51464 could allow attackers to perform unauthorized operations on affected IBM i systems.