CVE-2014-8904

IBM AIX/VIOS <7.1 - Privilege Escalation

Title source: llm

Description

lquerylv in cmdlvm in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.x allows local users to gain privileges via a crafted DBGCMD_LQUERYLV environment-variable value.

Exploits (1)

exploitdb WORKING POC
by S2 Crew · bashlocalaix
https://www.exploit-db.com/exploits/38576

Scores

EPSS 0.0056
EPSS Percentile 68.3%

Details

CWE
CWE-264
Status published
Products (27)
ibm/aix 5.3
ibm/aix 6.1
ibm/aix 7.1
ibm/vios 2.2.0.10
ibm/vios 2.2.0.11
ibm/vios 2.2.0.12
ibm/vios 2.2.0.13
ibm/vios 2.2.1.0
ibm/vios 2.2.1.1
ibm/vios 2.2.1.3
... and 17 more
Published Jan 15, 2015
Tracked Since Feb 18, 2026