IT

Tracker / CVE-2022-40746

CVE-2022-40746

High 7.2

IBM i Access Family 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.0 could allow a local authenticated attacker to execute arbitrary code on the system, caused by DLL search order hijacking vulnerability. By placing a specially crafted file in a compromised folder, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 236581.

Affected products and versions

ibm i_access_client_solutions · 1.1.2 → 1.1.4
ibm i_access_client_solutions · 1.1.4.3 → 1.1.9.0

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References