CVE-2026-16693CWE-327
CVE-2026-16693
Medium · published September 4, 2026
What it is
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to the use of hardcoded cryptographic constants to obfuscate encryption keys.
The record
Technical detail
- CVSS v3.1
- 4.4 · MEDIUM
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00070 · 0.0th percentile
- Weakness
- CWE-327 · Use of a Broken or Risky Cryptographic Algorithm
- Published
- 2026-09-04T21:16Z
References (1)
EPSS history
Timeline