SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-86093

HIGH · CVSS 7.5 EPSS 0.47%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

IBM Db2 versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.5 are vulnerable to a stack-based buffer overflow, which could allow an attacker controlling a DRDA server endpoint to execute arbitrary commands on Db2 clients. This vulnerability poses a significant risk, as it can lead to unauthorized access and potential data compromise. Organizations using these Db2 versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-86093
Severity
HIGH
CVSS
7.5
EPSS
0.47%

Original NVD Description

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control or impersonate a DRDA server endpoint to execute arbitrary commands on Db2 clients due to a stack-based buffer overflow that improperly copies user-controlled data into a fixed-size stack buffer without bounds checking.