Path Traversal Vulnerability in IBM Db2 Mirror for i
CVE-2026-17181

9.3CRITICAL

Key Information:

Vendor

IBM

Vendor
CVE Published:
14 August 2026

What is CVE-2026-17181?

IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6 are susceptible to a path traversal vulnerability that may enable a remote attacker to write files to arbitrary locations on the system. This could lead to unauthorized access and manipulation of sensitive data. Organizations using these versions are advised to implement the necessary patches and follow security best practices to mitigate the risks associated with this vulnerability.

Affected Version(s)

Db2 Mirror for i 7.4

Db2 Mirror for i 7.5

Db2 Mirror for i 7.6

References

CVSS V3.1

Score:
9.3
Severity:
CRITICAL
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.