Description
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of client-asserted identity.
Published: 2026-08-13
Score: 8.1 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability in IBM i 7.3 through 7.6 allows a remote attacker to supply a client‑asserted identity that is incorrectly validated by the system. By doing so, the attacker can impersonate a higher‑privileged user, thereby bypassing authentication checks and gaining unauthorized access to services and resources on the IBM i platform. This flaw is classified as CWE‑287, indicating a security logic vulnerability where authentication or authorization checks are inadequate.

Affected Systems

IBM i Release 5770‑SS1 running versions 7.6, 7.5, 7.4, and 7.3 are affected. The advisory lists specific Program Temporary Fixes (PTFs) for each release: for 7.6 the relevant PTFs are SJ11101, SJ11097, SJ11098, SJ11099, and SJ11102; for 7.5 the PTFs are SJ11101, SJ11097, SJ11098; for 7.4 the same set of PTFs applies; and for 7.3 the applicable PTF is SJ11101, SJ11097. Services impacted are Host Servers, Debug Server, Telnet, and DRDA/DDM.

Risk and Exploitability

The flaw carries a CVSS score of 8.1, indicating high severity. EPSS data is not available and the vulnerability is not listed in CISA’s KEV catalog, suggesting that widespread exploitation is not confirmed yet. The attack vector is remote, relying on network connections to the affected services. Should an attacker successfully bypass the identity validation, they could gain unauthorized control or access, potentially compromising confidentiality, integrity, or availability of the IBM i system.

Generated by OpenCVE AI on August 13, 2026 at 21:35 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now. Host Servers IBM i Release5770-SS1 PTF Number(s)PTF Download Link(s)7.6SJ11101 SJ11097 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11101 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11097 7.5SJ11102 SJ11098 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11102 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11098 7.4SJ11103 SJ11099 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11103 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11099 7.3SJ11104 SJ11100 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11100 Debug Server IBM i Release5770-SS1 PTF Number(s)PTF Download Link(s)7.6SJ10899 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ10899 Telnet IBM i Release5770-SS1 PTF Number(s)PTF Download Link(s)7.6SJ11022 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11022 DRDA/DDM IBM i Release5770-SS1 PTF Number(s)PTF Download Link(s)7.6SJ10848 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ10848 IBM recommends users running unsupported versions of affected products upgrade to a supported and fixed version of affected products.


OpenCVE Recommended Actions

  • Apply all IBM i PTFs listed for the affected release, such as SJ11101, SJ11097, SJ11098, SJ11099, and SJ11102 for IBM i 7.6; equivalent PTFs for 7.5, 7.4, and 7.3 according to the advisory.
  • Upgrade IBM i to the latest supported release that incorporates the mentioned fixes, ensuring that all related services are patched.
  • Limit exposure by restricting network access to the vulnerable services (Host Servers, Debug Server, Telnet, DRDA/DDM) with firewall rules or network segmentation.

Generated by OpenCVE AI on August 13, 2026 at 21:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 13 Aug 2026 19:00:00 +0000

Type Values Removed Values Added
Description IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of client-asserted identity.
Title IBM i is Affected By Multiple Vulnerabilities in Host Servers
First Time appeared Ibm
Ibm i
Weaknesses CWE-287
CPEs cpe:2.3:a:ibm:i:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.4.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.6.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.6:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm i
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-08-13T19:35:22.226Z

Reserved: 2026-07-24T19:06:41.847Z

Link: CVE-2026-17197

cve-icon Vulnrichment

Updated: 2026-08-13T19:35:17.543Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2026-08-13T19:17:18.640

Modified: 2026-08-13T20:36:48.443

Link: CVE-2026-17197

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-13T21:45:03Z

Weaknesses