What is CVE-2026-17186?
CVE-2026-17186 affects IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6, allowing a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command. Organizations using the affected versions should immediately apply the security patches provided by IBM.
Azərbaycanca: CVE-2026-17186, IBM Db2 Mirror for i məhsulunun 7.4, 7.5 və 7.6 versiyalarında aşkarlanmışdır. Zəiflik xüsusi elementlərin komanda daxilində düzgün neytrallaşdırılmaması səbəbindən uzaqdan hücum edən şəxsə ixtiyari CL komandaları icra etməyə imkan verir. Təsirə məruz qalan versiyaları istifadə edən təşkilatlar dərhal IBM-in təqdim etdiyi təhlükəsizlik yamalarını tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-77; shared vendor: IBM
FAQ2
Which product versions are affected by CVE-2026-17186?
The vulnerability affects IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6.
What can a remote attacker achieve by exploiting CVE-2026-17186?
The attacker can execute arbitrary CL commands due to improper neutralization of special elements in a command.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.