Description
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions and access internal network services due to improper validation of FTP PORT and EPRT commands.
Published: 2026-09-18
Score: 6.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Remote authentication bypass allowing access to internal network services
Action: Patch Now
AI Analysis

Impact

This vulnerability allows an authenticated user to bypass IBM i security restrictions by sending specially crafted FTP PORT and EPRT commands. The flaw lies in improper validation of these FTP commands, enabling the attacker to gain unauthorized access to internal network services. The impact includes potential elevation of privileges within the IBM i environment and can lead to further data compromise or disruption of services. The weakness is classified under CWE‑918, which covers race condition or synchronization vulnerabilities in network protocols.

Affected Systems

IBM i versions 7.3 through 7.6 are affected. Affected product lines include IBM i 7.3, 7.4, 7.5, and 7.6, all of which are listed under the vendor/product identifier IBM:i. Servers running these versions should be checked for the presence of the known PTFs (SJ11371 for 7.6, SJ11382 for 7.5, SJ11383 for 7.4, and SJ11384 for 7.3).

Risk and Exploitability

The vulnerability scores a CVSS of 6.4, indicating a moderate severity. No EPSS score is available, so the current exploit probability cannot be quantified, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the attack vector is likely remote and requires the attacker to be authenticated to the FTP service. The attacker must have valid FTP credentials and then issue a malformed PORT or EPRT command to take advantage of the improper validation. If successful, the attacker can cause a denial of service or bypass security restrictions, potentially exposing internal services.

Generated by OpenCVE AI on September 19, 2026 at 10:45 UTC.

Remediation

Vendor Solution

IBM i Release5770-TC1  PTF Number(s)PTF Download Link(s)7.6SJ11371 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11371 7.5SJ11382 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11382 7.4SJ11383 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11383 7.3SJ11384 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11384 IBM recommends users running unsupported versions of affected products upgrade to a supported and fixed version of affected products.


OpenCVE Recommended Actions

  • Apply the IBM i Release 5770‑TC1 patch set by installing the listed PTFs: SJ11371 for version 7.6, SJ11382 for 7.5, SJ11383 for 7.4, and SJ11384 for 7.3. Follow IBM’s instructions for downloading and applying these fixes from the provided links.
  • If a full patch cannot be applied immediately, block or restrict FTP access on machines containing vulnerable versions, or disable the PORT and EPRT commands through FTP configuration or firewall rules to prevent exploitation.
  • After installing the patches or applying the temporary restriction, test the FTP service to confirm that the PORT and EPRT commands no longer succeed in bypassing security restrictions.

Generated by OpenCVE AI on September 19, 2026 at 10:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions and access internal network services due to improper validation of FTP PORT and EPRT commands.
Title IBM i is Affected By Denial of Service and Security Restriction Bypass Vulnerabilities in FTP [, ]
First Time appeared Ibm
Ibm i
Weaknesses CWE-918
CPEs cpe:2.3:a:ibm:i:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.4.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.6.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i:7.6:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm i
References
Metrics cvssV3_1

{'score': 6.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-18T19:44:46.501Z

Reserved: 2026-08-04T16:59:54.209Z

Link: CVE-2026-18869

cve-icon Vulnrichment

Updated: 2026-09-18T19:44:40.621Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T20:17:10.703

Modified: 2026-09-22T19:32:25.730

Link: CVE-2026-18869

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T01:00:11Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)