Access Control Flaw in IBM Db2 Mirror for i by IBM
CVE-2026-17483

4.3MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
4 September 2026

What is CVE-2026-17483?

An access control vulnerability in IBM Db2 Mirror for i versions 7.4, 7.5, and 7.6 could enable local attackers to delete historical flight-recorder archives through improper access control in an SQL procedure, potentially compromising data integrity and audit trails. Organizations using these affected versions should apply the available patches and review their access control settings to mitigate risk.

Affected Version(s)

Db2 Mirror for i 7.4

Db2 Mirror for i 7.5

Db2 Mirror for i 7.6

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.