SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16185

MEDIUM · CVSS 6.4 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM WebSphere Application Server versions 9.0 and 8.5 are vulnerable to a remote authentication bypass on the admin console servlet, potentially allowing unauthorized access to sensitive administrative functions. This flaw poses a medium risk to organizations using these versions, particularly those with exposed admin interfaces. Administrators and security teams should prioritize patching or mitigating this vulnerability to safeguard their systems against potential exploitation.

CVE
CVE-2026-16185
Severity
MEDIUM
CVSS
6.4
EPSS
0.20%

Original NVD Description

IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication on an admin console servlet.