Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-25xh-49vg-48xq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 187873.

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 187873.

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 7.8
nvd
около 5 лет назад

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 187873.

CVSS3: 8.8
fstec
около 5 лет назад

Уязвимость инструмента визуального анализа IBM i2 Analyst's Notebook, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-120