What is CVE-2026-17081?
This vulnerability affects IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6. A remote attacker could write arbitrary files due to improper limitation of a pathname to a restricted directory. It is strongly recommended to apply the security updates provided by IBM promptly.
Azərbaycanca: Bu zəiflik IBM Db2 Mirror for i məhsulunun 7.4, 7.5 və 7.6 versiyalarına təsir edir. Uzaqdan hücum edən şəxs `pathname` məhdudiyyətinin düzgün tətbiq edilməməsi səbəbindən sistemə ixtiyari fayllar yaza bilər. Mümkün qədər tez IBM tərəfindən təqdim edilən təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: IBM
FAQ2
Which product is affected by CVE-2026-17081?
This vulnerability specifically affects IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6.
What is the root cause of CVE-2026-17081?
The vulnerability is caused by the improper limitation of a pathname to a restricted directory, which could allow a remote attacker to write arbitrary files to the system.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.