CVE-2026-16844

Summary

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

Affected Software

VendorProductVersion RangeStatus
IBMAIX7.2affected
IBMAIX7.3affected
IBMPowerVM VIOS4.1affected

Weaknesses

  • CWE-78: CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

References