SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-15955

HIGH · CVSS 7.5 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Db2 versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.5 are vulnerable to arbitrary file write attacks due to inadequate validation of file paths. This flaw could enable remote attackers to manipulate files on the affected systems, potentially leading to data compromise or system disruption. Organizations using these Db2 versions should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-15955
Severity
HIGH
CVSS
7.5
EPSS
0.40%

Original NVD Description

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow a remote attacker to perform an arbitrary file write due to improper validation of file paths.