Technical Details of CVE-2023-30990 - Unauthenticated RCE in IBM i DDM Service
Preface IBM published a security bulletin called IBM i is vulnerable to an attacker executing CL commands due to an exploitation of DDM architecture on 2023.06.30, fixing an unauthenticated remote code execution vulnerability reported by us. This blog post contains the technical details of the discovery and exploitation processes. About...
2023-07-03 — 6 minute read