CVE-2026-16987
8.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Summary
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to improper validation of the LANG environment variable.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| IBM | i | 7.6 | affected |
| IBM | i | 7.5 | affected |
| IBM | i | 7.4 | affected |
| IBM | i | 7.3 | affected |
Weaknesses
- CWE-73: CWE-73 External Control of File Name or Path
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.