CVE-2023-28528
published 2023-04-28CVE-2023-28528: IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands…
PriorityP350high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EXPLOIT
EPSS
1.46%
70.5th percentile
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands. IBM X-Force ID: 251207.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | aix | — | — |
| ibm | aix | — | — |
| ibm | aix | — | — |
| ibm | aix | — | — |
| ibm | vios | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Talos
Vulnerability Spotlight: Vulnerabilities in IBM AIX could lead to command injection with elevated privileges
blogs_talos·2023-04-24·CVSS 8.4
CVE-2023-26286 [HIGH] Vulnerability Spotlight: Vulnerabilities in IBM AIX could lead to command injection with elevated privileges
Tim Brown of Cisco Security Advisory EMEA discovered these vulnerabilities and contributed to this blog post.
A Cisco security researcher recently discovered two vulnerabilities in the IBM AIX Unix platforms that could be exploited to inject commands and logs into targeted systems with elevated privileges.
AIX is a more than 20-year-old set of operating systems for Unix that run on various IBM platforms.
TALOS-2023-1690 (CVE-2023-26286) is a vulnerability in AIX’s errlog() syscall functionality that can be triggered if an adversary sends a specially crafted syscall. This could then allow the malicious actor to generate arbitrary logs which can trigger malicious commands to be run with elevated privileges. An adversary could also exploit TALOS-2023-1690 to gain out-of-bounds memory acces
Talos
Vulnerability Spotlight: Vulnerabilities in IBM AIX could lead to command injection with elevated privileges
blogs_talos·2023-04-24·CVSS 8.4
[HIGH] Vulnerability Spotlight: Vulnerabilities in IBM AIX could lead to command injection with elevated privileges
## Vulnerability Spotlight: Vulnerabilities in IBM AIX could lead to command injection with elevated privileges
Tim Brown of Cisco Security Advisory EMEA discovered these vulnerabilities and contributed to this blog post.
A Cisco security researcher recently discovered two vulnerabilities in the IBM AIX Unix platforms that could be exploited to inject commands and logs into targeted systems with elevated privileges.
AIX is a more than 20-year-old set of operating systems for Unix that run on various IBM platforms.
TALOS-2023-1690 (CVE-2023-26286) is a vulnerability in AIX’s errlog() syscall functionality that can be triggered if an adversary sends a specially crafted syscall. This could then allow the malicious actor to generate arbitrary logs which can trigger malicious commands to be
arXiv
Hybrid Privilege Escalation and Remote Code Execution Exploit Chains
arxiv_fulltext·2025-09-22
Hybrid Privilege Escalation and Remote Code Execution Exploit Chains
Exploit Classification
Modeling
AI Planning
ALFA-Chains
RCE
Core Certified Exploit Library
DMZ+LAN
20+6subs
200+6subs
Purdue_1
Purdue_2
Purdue_3
Synthetic
H0
H1
H2
Hybrid Privilege Escalation and Remote Code Execution Exploit Chains
Miguel Tulla
MIT
Cambridge, MA
Email: [email protected]
Andrea Vignali
University of Naples Federico II
Naples, Italy
Email: [email protected]
Cristian Colon
MIT
Cambridge, MA
Email: [email protected]
Anahita Srinivasan
MIT
Cambridge, MA
Email: [email protected]
Giancarlo Sperlì
University of Naples Federico II
Naples, Italy
Email: [email protected]
Simon Pietro Romano
University of Naples Federico II
Naples, Italy
Email: [email protected]
Masataro Asai
MIT-IBM Watson AI Lab
Cambridge, MA
Email: [email protected]
Erik Hemberg
http://packetstormsecurity.com/files/172458/IBM-AIX-7.2-inscout-Privilege-Escalation.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/251207https://www.ibm.com/support/pages/node/6983232http://packetstormsecurity.com/files/172458/IBM-AIX-7.2-inscout-Privilege-Escalation.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/251207https://www.ibm.com/support/pages/node/6983232https://www.talosintelligence.com/vulnerability_reports/TALOS-2023-1691
2023-04-28
Published