IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements used in an OS command.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Ibm I
cpe:2.3:a:ibm:i:7.5:*:*:*:*:*:*:*
|
— | — |
|
Ibm I
cpe:2.3:a:ibm:i:7.6:*:*:*:*:*:*:*
|
— | — |