CVE-2026-16867

Summary

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to access server resources with the privileges of an authenticated user due to improper authentication during NTLM session negotiation.

Affected Software

VendorProductVersion RangeStatus
IBMi7.6affected
IBMi7.5affected
IBMi7.4affected
IBMi7.3affected

Weaknesses

  • CWE-287: CWE-287 Improper Authentication

References