PublicCVE

CVE-2024-22346

HIGH8.4JSON exportCreate alert

Description

Db2 for IBM i 7.2, 7.3, 7.4, and 7.5 infrastructure could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege. IBM X-Force ID: 280203.

CVSS breakdown

CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected products

  • ibm / i7.2, 7.3, 7.4, 7.5 – 7.2, 7.3, 7.4, 7.5