SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16822

CRITICAL · CVSS 9.3 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM AIX versions 7.2 and 7.3, along with IBM PowerVM VIOS 4.1, are vulnerable to a critical flaw that enables remote attackers to impersonate the TNC policy server, potentially allowing them to modify network traffic. This improper certificate validation poses a significant risk to the integrity and confidentiality of data transmitted within affected environments. Organizations utilizing these IBM products should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-16822
Severity
CRITICAL
CVSS
9.3
EPSS
0.20%

Original NVD Description

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due to improper certificate validation.

Related CVEs

Other vulnerabilities affecting the same vendor(s)