CVE-2025-33103

IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 product IBM TCP/IP Connectivity Utilities for i contains a privilege escalation vulnerability. A malicious actor with command line access to the host operating system can elevate privileges to gain root access to the host operating system.
References
Link Resource
https://www.ibm.com/support/pages/node/7233799 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:ibm:i:7.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.4:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.5:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.6:*:*:*:*:*:*:*

History

04 Jun 2025, 20:12

Type Values Removed Values Added
First Time Ibm
Ibm i
CPE cpe:2.3:o:ibm:i:7.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.6:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.5:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.4:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7233799 - () https://www.ibm.com/support/pages/node/7233799 - Vendor Advisory
CWE NVD-CWE-noinfo

19 May 2025, 13:35

Type Values Removed Values Added
Summary
  • (es) Las utilidades de conectividad TCP/IP de IBM para i, producto de IBM i 7.2, 7.3, 7.4, 7.5 y 7.6, contienen una vulnerabilidad de escalada de privilegios. Un agente malicioso con acceso de línea de comandos al sistema operativo host puede elevar los privilegios para obtener acceso root al sistema operativo host.

17 May 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-17 16:15

Updated : 2025-06-04 20:12


NVD link : CVE-2025-33103

Mitre link : CVE-2025-33103

CVE.ORG link : CVE-2025-33103


JSON object : View

Products Affected

ibm

  • i
CWE
CWE-250

Execution with Unnecessary Privileges

NVD-CWE-noinfo