AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-16967

HIGH · CVSS 8.5 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

A time-of-check to time-of-use (TOCTOU) race condition in IBM i versions 7.3 through 7.6 allows remote authenticated attackers to exploit symbolic links, potentially granting them unauthorized access to system objects. This vulnerability poses a high risk, particularly for organizations using affected IBM i systems, as it could lead to data breaches or unauthorized system manipulation. IT security teams managing these systems should prioritize immediate remediation efforts to mitigate potential exploitation.

CVE
CVE-2026-16967
Severity
HIGH
CVSS
8.5
EPSS
0.25%

Original NVD Description

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain unauthorized access to system objects due to a time-of-check to time-of-use (TOCTOU) race condition involving symbolic links.