CVE-2024-56347: IBM AIX command execution
IBM AIX 7.2 and 7.3 nimsh service SSL/TLS protection mechanisms could allow a remote attacker to execute arbitrary commands due to improper process controls.
Other sources
IBM AIX nimsh service SSL/TLS protection mechanisms could allow a remote attacker to execute arbitrary commands due to improper process controls.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56347?
CVE-2024-56347 is considered a high severity vulnerability allowing remote command execution.
How do I fix CVE-2024-56347?
To fix CVE-2024-56347, ensure to update the AIX system to the latest version and apply all relevant security patches provided by IBM.
What versions of IBM AIX are affected by CVE-2024-56347?
CVE-2024-56347 affects IBM AIX versions 7.2 and 7.3.
Can CVE-2024-56347 be exploited remotely?
Yes, CVE-2024-56347 can be exploited remotely by attackers due to improper process controls in the nimsh service.
What impact does CVE-2024-56347 have on my system?
CVE-2024-56347 can allow attackers to execute arbitrary commands, potentially compromising the entire system.