CVE-2026-17082
- EPSS 0.28%
- Veröffentlicht 12.08.2026 19:36:24
- Zuletzt bearbeitet 17.08.2026 14:32:17
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges due to improper validation of a client-supplied profile name.
CVE-2026-17083
- EPSS 0.46%
- Veröffentlicht 12.08.2026 19:35:53
- Zuletzt bearbeitet 17.08.2026 14:49:13
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow.
CVE-2026-17445
- EPSS 0.24%
- Veröffentlicht 12.08.2026 19:34:16
- Zuletzt bearbeitet 17.08.2026 17:50:32
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper validation of an attacker-supplied user profile name.
CVE-2026-17417
- EPSS 0.42%
- Veröffentlicht 12.08.2026 19:32:53
- Zuletzt bearbeitet 17.08.2026 17:50:46
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of shell metacharacters.
CVE-2026-16907
- EPSS 0.4%
- Veröffentlicht 12.08.2026 17:36:49
- Zuletzt bearbeitet 17.08.2026 13:16:51
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to improper bounds checking.
CVE-2026-17248
- EPSS 0.33%
- Veröffentlicht 12.08.2026 17:35:51
- Zuletzt bearbeitet 13.08.2026 16:31:58
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to improper neutralization of special elements in an OS command.
CVE-2026-17271
- EPSS 0.39%
- Veröffentlicht 12.08.2026 17:35:22
- Zuletzt bearbeitet 17.08.2026 13:16:51
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper validation of input size.
CVE-2026-17218
- EPSS 0.55%
- Veröffentlicht 12.08.2026 17:35:04
- Zuletzt bearbeitet 13.08.2026 16:33:11
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write.
CVE-2026-18669
- EPSS 0.5%
- Veröffentlicht 12.08.2026 17:32:05
- Zuletzt bearbeitet 13.08.2026 16:28:03
IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code execution vulnerability in the activation engine component. An authenticated attacker can execute a maliciously planted script with root authority.
CVE-2026-16863
- EPSS 0.34%
- Veröffentlicht 12.08.2026 17:31:02
- Zuletzt bearbeitet 13.08.2026 16:48:26
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to an out-of-bounds read.