CVE-2026-18554
- EPSS 0.85%
- Veröffentlicht 14.08.2026 19:23:50
- Zuletzt bearbeitet 21.08.2026 12:44:16
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.
CVE-2026-18178
- EPSS 0.44%
- Veröffentlicht 14.08.2026 19:23:30
- Zuletzt bearbeitet 21.08.2026 12:46:41
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to delete arbitrary files due to path traversal.
CVE-2026-17227
- EPSS 0.33%
- Veröffentlicht 14.08.2026 19:23:15
- Zuletzt bearbeitet 21.08.2026 12:56:55
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass security restrictions due to improper neutralization of special elements used in an SQL command.
CVE-2026-17209
- EPSS 0.43%
- Veröffentlicht 14.08.2026 19:22:58
- Zuletzt bearbeitet 21.08.2026 13:04:48
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitrary scripts due to cross-site scripting.
CVE-2026-17186
- EPSS 0.47%
- Veröffentlicht 14.08.2026 19:22:46
- Zuletzt bearbeitet 21.08.2026 13:09:10
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command.
CVE-2026-17184
- EPSS 0.8%
- Veröffentlicht 14.08.2026 19:22:28
- Zuletzt bearbeitet 21.08.2026 13:23:00
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary code due to external control of file name or path.
CVE-2026-17182
- EPSS 0.77%
- Veröffentlicht 14.08.2026 19:22:03
- Zuletzt bearbeitet 20.08.2026 20:58:01
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to bypass authentication and obtain or alter sensitive information due to improper validation of request URI path segments.
CVE-2026-17181
- EPSS 0.59%
- Veröffentlicht 14.08.2026 19:21:30
- Zuletzt bearbeitet 20.08.2026 21:10:00
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write files to arbitrary locations due to path traversal.
CVE-2026-17179
- EPSS 1.01%
- Veröffentlicht 14.08.2026 19:20:52
- Zuletzt bearbeitet 20.08.2026 21:11:17
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a denial of service due to command injection.
CVE-2026-17177
- EPSS 0.55%
- Veröffentlicht 14.08.2026 19:20:41
- Zuletzt bearbeitet 20.08.2026 21:12:14
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service due to uncontrolled recursion.