What is CVE-2026-17445?
CVE-2026-17445 is a vulnerability in IBM i versions 7.3, 7.4, 7.5, and 7.6 that allows a remote authenticated attacker to bypass security restrictions due to improper validation of an attacker-supplied user profile name. This could potentially lead to unauthorized actions or information disclosure. Users are advised to apply the security patch when released by IBM.
Azərbaycanca: CVE-2026-17445, IBM i əməliyyat sisteminin (7.3, 7.4, 7.5, 7.6 versiyaları) uzaqdan autentifikasiya olunmuş hücumçuya istifadəçi profili adının düzgün yoxlanılmaması səbəbindən təhlükəsizlik məhdudiyyətlərini aşmağa imkan verən boşluqdur. İstismar nəticəsində məxfi məlumatların əldə edilməsi və ya icazəsiz əməliyyatlar mümkündür. İstifadəçilərə IBM tərəfindən təqdim ediləcək təhlükəsizlik yamasını tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: IBM
FAQ2
Which operating system is affected by CVE-2026-17445 and what is the cause of the vulnerability?
CVE-2026-17445 affects IBM i versions 7.3, 7.4, 7.5, and 7.6. The vulnerability is caused by improper validation of a user profile name.
What can a remote authenticated attacker achieve by exploiting CVE-2026-17445?
By exploiting this vulnerability, a remote authenticated attacker can bypass security restrictions, potentially leading to unauthorized actions or information disclosure.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.