What is CVE-2026-16898?
CVE-2026-16898 is a vulnerability in IBM i versions 7.3, 7.4, 7.5, and 7.6. Due to improper validation of an attacker-controlled file path, a local authenticated attacker could change the ownership of arbitrary files. Immediate application of security patches provided by IBM is strongly recommended.
Azərbaycanca: CVE-2026-16898 IBM i əməliyyat sistemi üçün müəyyən edilmiş boşluqdur. 7.3, 7.4, 7.5 və 7.6 versiyalarına təsir edir - yerli autentifikasiya olunmuş hücumçu fayl yolunun düzgün yoxlanılmaması səbəbindən ixtiyari faylların sahibliyini dəyişə bilər. Bu problemi aradan qaldırmaq üçün dərhal IBM tərəfindən təqdim edilən təhlükəsizlik yamaları tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: IBM
FAQ2
Which IBM i versions are affected by CVE-2026-16898?
This vulnerability affects IBM i versions 7.3, 7.4, 7.5, and 7.6.
What can an attacker achieve by exploiting CVE-2026-16898?
A local authenticated attacker could change the ownership of arbitrary files due to improper validation of a file path.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.