CVE-2026-9744CWE-297

CVE-2026-9744

Medium · published September 4, 2026

CVSS v3.1
5.3
EPSS
0%
Percentile
1.6
In the wild
Unconfirmed
What it is

IBM Netezza Software 11.3.0.3 through Interim Fix 002 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.

The record
Technical detail
CVSS v3.1
5.3 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS v4.0
Not supplied
EPSS
0.00113 · 1.6th percentile
Weakness
CWE-297 · Improper Validation of Certificate with Host Mismatch
Published
2026-09-04T01:17Z
References (1)
EPSS history
Timeline
  • 05 SEP 03:44Z
    EPSS moved — → 0%
    epss
  • 03 SEP 20:43Z
    Vulnerabilities exists in IBM Netezza Software
    cvelistv5