SEPTEMBER 29, 2026
Live Feed
Back to database
Case File

CVE-2026-6544

MEDIUM · CVSS 6.2

Source: NVD + CISA KEV + EPSS · Published 2026-09-24 · Last synced 2026-09-29

CyberRota Analysis

AI-Generated

IBM Concert versions 1.0.0 through 3.0.0 are vulnerable to a directory recursive copying flaw that lacks adequate controls, potentially allowing sensitive or unnecessary files to be unintentionally included in operations. This vulnerability increases the attack surface, making it crucial for organizations using affected versions to prioritize remediation to mitigate risks associated with data exposure. Users and administrators of IBM Concert should assess their configurations and apply necessary updates or mitigations promptly.

CVE
CVE-2026-6544
Severity
MEDIUM
CVSS
6.2
EPSS
N/A

Original NVD Description

IBM Concert 1.0.0 through 3.0.0 allows recursive copying of directories without proper controls which can lead to unintentional inclusion of sensitive or unnecessary files and increased attack surface.

Related CVEs

Other vulnerabilities affecting the same vendor(s)