Local Privilege Escalation Vulnerability in IBM Storage Scale GUI
CVE-2024-31891
7.8HIGH
What is CVE-2024-31891?
CVE-2024-31891 is a critical local privilege escalation vulnerability found in IBM Storage Scale GUI versions 5.1.9.0 through 5.1.9.6 and 5.2.0.0 through 5.2.1.1. This vulnerability allows a malicious actor with command line access to the 'scalemgmt' user to exploit the system and elevate their privileges to gain root access to the underlying operating system. If exploited, this vulnerability could lead to unauthorized actions and significant security risks for affected environments. It is crucial for users running these versions to apply security patches and ensure proper access controls are in place to mitigate risk.
Affected Version(s)
Storage Scale 5.1.9.0 <= 5.1.9.6
Storage Scale 5.2.0.0 <= 5.2.1.1