SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-14275

MEDIUM · CVSS 6.3 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM i Access Client Solutions versions 1.1.2.0 through 1.1.9.15 are vulnerable to command injection, allowing authenticated users to execute arbitrary commands with normal user privileges due to improper input validation in the STRPCCMD CL command. This vulnerability could lead to unauthorized actions on the system, potentially compromising its integrity and security. Organizations using affected versions should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-14275
Severity
MEDIUM
CVSS
6.3
EPSS
0.27%

Original NVD Description

IBM i Access Family 1.1.2.0 through 1.1.9.15 IBM i Access Client Solutions could allow an authenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input in a STRPCCMD CL command.