9.1
CVE-2026-19646
- EPSS 0.52%
- Veröffentlicht 10.09.2026 22:16:55
- Zuletzt bearbeitet 11.09.2026 18:16:56
- Erkennungen
Multiple vulnerabilities affect IBM License Key Server Administration and Reporting Tool and IBM LKS Administration Agent
IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 could allow a remote attacker to redirect users to an arbitrary domain due to improper validation of the HTTP Host header.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerIBM
≫
Produkt
Common Licensing
Version
Agent 9.0
Status
affected
Version
Agent 9.0.0.1
Status
affected
Version
Agent 9.0.0.2
Status
affected
Version
ART 9.0
Status
affected
Version
ART 9.0.0.1
Status
affected
Version
ART 9.0.0.2
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.52% | 0.426 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| IBM | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
https://www.ibm.com/support/pages/node/7286490