← back
CVE-2025-36367

IBM i is affected by a privilege escalation in IBM i SQL services

CVSS 8.8 HIGHEPSS 0.3%CWE-862
IBM i 7.6, 7.5, 7.4, 7.3, and 7.2 is vulnerable to privilege escalation caused by an invalid IBM i SQL services authorization check. A malicious actor can use the elevated privileges of another user profile to gain root access to the host operating system.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
IBM · i

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →