CVE-2026-16708CWE-15
CVE-2026-16708
High · published August 15, 2026
What it is
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information due to external control of system configuration.
The record
Technical detail
- CVSS v3.1
- 8.3 · HIGH
- Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.00244 · 15.5th percentile
- Weakness
- CWE-15 · External Control of System or Configuration Setting
- Published
- 2026-08-15T00:16Z
Affected products (1)
| Product | Versions | Fixed in |
|---|
| ibm/db2_mirror_for_i | ≥ 7.4, ≤ 7.6 | — |
References (1)
EPSS history
Timeline