Arbitrary Command Execution in IBM i Access Client Solutions
CVE-2026-14275
6.3MEDIUM
What is CVE-2026-14275?
The IBM i Access Client Solutions software contains a vulnerability that enables an authenticated user to execute arbitrary commands with standard user privileges on the system. This issue stems from improper validation of user-supplied input within the STRPCCMD CL command. Implementing the latest patch and adhering to security best practices is essential to mitigate risks associated with this vulnerability.
Affected Version(s)
i Access Family 1.1.2.0 <= 1.1.9.15