What is CVE-2026-17642?
CVE-2026-17642 affects IBM i versions 7.6, 7.5, 7.4, and 7.3. It allows a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements in an OS command, leading to OS command injection. Users should apply the security patches provided by IBM.
Azərbaycanca: CVE-2026-17642, IBM i əməliyyat sisteminin 7.6, 7.5, 7.4 və 7.3 versiyalarına təsir edir. Bu boşluq uzaqdan autentifikasiya olunmuş hücumçuya OS command injection zəifliyi səbəbindən ixtiyari əmrlər icra etməyə imkan verir. İstifadəçilərə IBM tərəfindən təqdim edilən təhlükəsizlik yamalarını tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-78; shared vendor: IBM
FAQ2
Which versions of IBM i are affected by CVE-2026-17642?
This vulnerability affects IBM i versions 7.6, 7.5, 7.4, and 7.3.
Does exploiting CVE-2026-17642 require authentication?
Yes, this vulnerability can be exploited by a remote attacker, but only after authentication.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.