vendor:
IBM i Access Client Solutions
by:
John Page (aka hyp3rlinx)
4.1
CVSS
MEDIUM
Remote Credential Theft
522
CWE
Product Name: IBM i Access Client Solutions
Affected Version From: All versions
Affected Version To: All versions
Patch Exists: NO
Related CWE: CVE-2024-22318
CPE: a:ibm:ibm_i_access_client_solutions
Platforms Tested: Windows
2024
IBM i Access Client Solutions Remote Credential Theft Vulnerability
IBM i Access Client Solutions (ACS) is vulnerable to remote credential theft on Windows workstations with NT LAN Manager (NTLM) enabled. By creating UNC paths in ACS 5250 display terminal configuration files, attackers can point to a malicious server, capturing NTLM hash information when the user opens the file, leading to credential theft.
Mitigation:
There are no fixes or patches available currently. It is recommended to disable NTLM on Windows workstations to mitigate this vulnerability.