PT-2025-17206 · Ibm · Ibm I

Published

2025-04-17

·

Updated

2025-07-17

·

CVE-2025-2947

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM i version 7.6
Description The issue is related to a privilege escalation due to incorrect profile swapping in an OS command, allowing a malicious actor to gain root access to the host operating system.
Recommendations For IBM i version 7.6, apply the necessary patch or fix to resolve the privilege escalation issue. As a temporary workaround, consider restricting access to the vulnerable OS command until a patch is available.

Fix

LPE

Weakness Enumeration

Related Identifiers

BDU:2025-06854
CVE-2025-2947

Affected Products

Ibm I