CVE-2026-16656
- EPSS 0.72%
- Veröffentlicht 19.08.2026 14:55:53
- Zuletzt bearbeitet 20.08.2026 19:16:49
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper authentication.
CVE-2026-15078
- EPSS 0.32%
- Veröffentlicht 19.08.2026 14:35:28
- Zuletzt bearbeitet 20.08.2026 15:54:17
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized access to AIX systems due to improper validation of TLS certificates.
CVE-2026-15068
- EPSS 0.78%
- Veröffentlicht 19.08.2026 14:34:27
- Zuletzt bearbeitet 20.08.2026 19:16:48
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
CVE-2026-15065
- EPSS 0.67%
- Veröffentlicht 19.08.2026 14:33:36
- Zuletzt bearbeitet 20.08.2026 19:16:47
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to the exposure of intermediate certificate authority private keys in a publicly available update file.
CVE-2026-15061
- EPSS 0.59%
- Veröffentlicht 19.08.2026 14:33:00
- Zuletzt bearbeitet 20.08.2026 16:17:07
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote attacker to overwrite files due to path traversal.
CVE-2026-6732
- EPSS 0.63%
- Veröffentlicht 23.04.2026 22:19:34
- Zuletzt bearbeitet 31.08.2026 12:17:56
A flaw was found in libxml2. This vulnerability occurs when the library processes a specially crafted XML Schema Definition (XSD) validated document that includes an internal entity reference. An attacker could exploit this by providing a malicious d...
CVE-2026-0992
- EPSS 0.43%
- Veröffentlicht 15.01.2026 14:20:24
- Zuletzt bearbeitet 01.09.2026 13:18:07
A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A remote attacker can exploit this...
CVE-2026-0989
- EPSS 0.46%
- Veröffentlicht 15.01.2026 14:20:23
- Zuletzt bearbeitet 01.09.2026 13:18:07
A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schem...
CVE-2026-0990
- EPSS 0.82%
- Veröffentlicht 15.01.2026 14:20:06
- Zuletzt bearbeitet 01.09.2026 12:17:34
A flaw was found in libxml2, an XML parsing library. This uncontrolled recursion vulnerability occurs in the xmlCatalogXMLResolveURI function when an XML catalog contains a delegate URI entry that references itself. A remote attacker could exploit th...
CVE-2025-36251
- EPSS 0.54%
- Veröffentlicht 13.11.2025 22:15:51
- Zuletzt bearbeitet 19.11.2025 22:08:07
IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 nimsh service SSL/TLS implementations could allow a remote attacker to execute arbitrary commands due to improper process controls. This addresses additional attack vectors for a vulnerability that was p...