CVE-2026-16708CWE-15

CVE-2026-16708

High · published August 15, 2026

CVSS v3.1
8.3
EPSS
0%
Percentile
15.5
In the wild
Unconfirmed
What it is

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information due to external control of system configuration.

The record
Technical detail
CVSS v3.1
8.3 · HIGH
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00244 · 15.5th percentile
Weakness
CWE-15 · External Control of System or Configuration Setting
Published
2026-08-15T00:16Z
Affected products (1)
ProductVersionsFixed in
ibm/db2_mirror_for_i≥ 7.4, ≤ 7.6
References (1)
EPSS history
Timeline
  • 14 AUG 19:17Z
    IBM Db2 Mirror for i is affected by multiple vulnerabilities
    cvelistv5