CVE-2026-16982
- EPSS 0.39%
- Veröffentlicht 13.08.2026 18:51:10
- Zuletzt bearbeitet 18.08.2026 02:17:25
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a heap buffer overflow.
CVE-2026-17220
- EPSS 0.39%
- Veröffentlicht 13.08.2026 18:49:53
- Zuletzt bearbeitet 17.08.2026 14:57:53
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and modify authentication metadata due to a buffer overflow.
CVE-2026-17197
- EPSS 0.34%
- Veröffentlicht 13.08.2026 18:49:09
- Zuletzt bearbeitet 17.08.2026 15:06:27
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of client-asserted identity.
CVE-2026-18071
- EPSS 0.09%
- Veröffentlicht 13.08.2026 18:48:31
- Zuletzt bearbeitet 17.08.2026 16:39:38
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to improper privilege management.
CVE-2026-17485
- EPSS 0.29%
- Veröffentlicht 12.08.2026 21:24:04
- Zuletzt bearbeitet 17.08.2026 15:47:26
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and obtain sensitive information due to an integer underflow.
CVE-2026-17642
- EPSS 0.42%
- Veröffentlicht 12.08.2026 19:43:02
- Zuletzt bearbeitet 17.08.2026 17:50:00
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
CVE-2026-18150
- EPSS 0.17%
- Veröffentlicht 12.08.2026 19:41:24
- Zuletzt bearbeitet 17.08.2026 17:49:24
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to a race condition.
CVE-2026-18099
- EPSS 0.18%
- Veröffentlicht 12.08.2026 19:41:02
- Zuletzt bearbeitet 17.08.2026 17:49:47
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary script code due to improper neutralization of user-controlled input.
CVE-2026-18148
- EPSS 0.21%
- Veröffentlicht 12.08.2026 19:40:20
- Zuletzt bearbeitet 17.08.2026 17:49:38
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to inject arbitrary content into Navigator log files due to improper output neutralization for logs.
CVE-2026-17111
- EPSS 0.25%
- Veröffentlicht 12.08.2026 19:37:10
- Zuletzt bearbeitet 17.08.2026 17:51:20
IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.