Path Traversal Vulnerability in IBM i Access Client Solutions
CVE-2026-13105

8.8HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
12 August 2026

What is CVE-2026-13105?

IBM i Access Client Solutions versions 1.1.2.0 through 1.1.9.13 are susceptible to a path traversal vulnerability which can be exploited via ZIP slip when importing a configuration. This allows attackers to manipulate file system paths, potentially gaining unauthorized access to sensitive files or executing arbitrary code within the application. Users of affected versions are urged to apply the latest update to mitigate this risk.

Affected Version(s)

i Access Client Solutions 1.1.2.0 <= 1.1.9.13

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.