CVE-2024-52895

MEDIUM

I - Improper Condition Check

Title source: rule
STIX 2.1

Description

IBM i 7.4 and 7.5 is vulnerable to a database access denial of service caused by a bypass of a database capabilities restriction check. A privileged bad actor can remove or otherwise impact database infrastructure files resulting in incorrect behavior of software products that rely upon the database.

Scores

CVSS v3 6.5
EPSS 0.0003
EPSS Percentile 10.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-754
Status published
Products (3)
ibm/i 7.4
ibm/i 7.5
ibm/i 7.6
Published Feb 14, 2025
Tracked Since Feb 18, 2026