Privilege Escalation Vulnerability in IBM i
CVE-2026-17276

9.6CRITICAL

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
12 August 2026

What is CVE-2026-17276?

A vulnerability exists in IBM i versions 7.6, 7.5, 7.4, and 7.3 which may be exploited by a remote authenticated attacker. This flaw arises from improper authorization management in the handling of high-authority threads. By leveraging this vulnerability, attackers could escalate their privileges, potentially gaining unauthorized access to sensitive system functions and data.

Affected Version(s)

i 7.6

i 7.5

i 7.4

References

CVSS V3.1

Score:
9.6
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.