# CVE-2025-2947

## Summary

- **CVE ID:** CVE-2025-2947
- **Severity:** HIGH
- **CVSS Score:** 7.2 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H)
- **CWE:** CWE-278
- **Published:** Apr 17, 2025
- **Last Modified:** Mar 12, 2026

## Description

IBM i 7.6 

contains a privilege escalation vulnerability due to incorrect profile swapping in an OS command.  A malicious actor can use the command to elevate privileges to gain root access to the host operating system.

## Affected Products

- IBM — i (7.6)

## References

- [CNA](https://www.ibm.com/support/pages/node/7231025)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.42%
- **EPSS Percentile:** 35.0

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._