IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror for i might have user profiles with elevated privileges caused by incorrect processing during a restore of multiple user profiles. A user with restore privileges could exploit this vulnerability to obtain elevated privileges on the restored system. IBM X-Force ID: 165592.
2019-08-29T15:15:11.293
2024-11-21T04:43:41.773
Modified
CVSSv3.1: 6.3 (MEDIUM)
AV:L/AC:M/Au:N/C:P/I:P/A:N
3.4
4.9