CVE-2024-56346
published 2025-03-18CVE-2024-56346: IBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improper process controls.
PriorityP268critical10CVSS 3.1
AVNACLPRNUINSCCHIHAH
EPSS
1.06%
60.5th percentile
IBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improper process controls.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | aix | — | — |
| ibm | aix | — | — |
| ibm | vios | — | — |
| ibm | vios | — | — |
| ibm | vios | — | — |
| ibm | vios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gf4w-g7vv-vr2w: IBM AIX 7
ghsa_unreviewed·2025-11-14·CVSS 10.0
CVE-2025-36250 [CRITICAL] CWE-114 GHSA-gf4w-g7vv-vr2w: IBM AIX 7
IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a remote attacker to execute arbitrary commands due to improper process controls. This addresses additional attack vectors for a vulnerability that was previously addressed in CVE-2024-56346.
GHSA
GHSA-68fx-m736-wfwf: IBM AIX 7
ghsa_unreviewed·2025-03-18
CVE-2024-56346 [CRITICAL] CWE-114 GHSA-68fx-m736-wfwf: IBM AIX 7
IBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improper process controls.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-18
Published