CVE-2026-17186

Summary

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command.

Affected Software

VendorProductVersion RangeStatus
IBMDb2 Mirror for i7.4affected
IBMDb2 Mirror for i7.5affected
IBMDb2 Mirror for i7.6affected

Weaknesses

  • CWE-78: CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

References