SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-16702

MEDIUM · CVSS 6.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Db2 versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.5 on Windows and Linux are vulnerable to a denial-of-service attack caused by a null pointer dereference, which can be exploited by remote authenticated attackers. Organizations using these Db2 versions should prioritize patching to mitigate potential service disruptions. This vulnerability is particularly relevant for database administrators and security teams managing IBM Db2 deployments.

CVE
CVE-2026-16702
Severity
MEDIUM
CVSS
6.5
EPSS
0.34%
Windows Linux

Original NVD Description

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a remote authenticated attacker to cause a denial of service due to a null pointer dereference.