Description
IBM i 7.2, 7.3, 7.4, 7.5 and IBM Rational Development Studio for i 7.2, 7.3, 7.4, 7.5 networking and compiler infrastructure could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privileges. IBM X-Force ID: 283242.
Problem types
CWE-427 Uncontrolled Search Path Element
Product status
7.2, 7.3, 7.4, 7.5
7.2, 7.3, 7.4, 7.5
References
www.ibm.com/support/pages/node/7149672
www.ibm.com/support/pages/node/7149616
exchange.xforce.ibmcloud.com/vulnerabilities/283242
www.ibm.com/support/pages/node/7149672
www.ibm.com/support/pages/node/7149616
exchange.xforce.ibmcloud.com/vulnerabilities/283242