CVE-2026-16867
8.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Summary
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to access server resources with the privileges of an authenticated user due to improper authentication during NTLM session negotiation.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| IBM | i | 7.6 | affected |
| IBM | i | 7.5 | affected |
| IBM | i | 7.4 | affected |
| IBM | i | 7.3 | affected |
Weaknesses
- CWE-287: CWE-287 Improper Authentication
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.