CVE-2026-16865

Summary

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to command injection.

Affected Software

VendorProductVersion RangeStatus
IBMAIX7.2affected
IBMAIX7.3affected
IBMPowerVM VIOS4.1affected

Weaknesses

  • CWE-78: CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

References