CVE-2026-17248Disclosure(ibm / i)

LOWCVSS 6.5 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch ibm i systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to improper neutralization of special elements in an OS command.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • i

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
i

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-08-13: 3Patch / Workaround · 2026-08-13: 1Technical Details · 2026-08-13: 308-13
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse3 posts
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    CVE-2026-17248 - DoS in IBM i 7.3-7.6 via improper OS command neutralization. Remote authenticated attacker can crash systems. CVSS 7.1. No patch yet - monitor advisory. #CVE #IBM #infosec https://www.valtersit.com/cve/CVE-2026-17248/ #infosec #CVE #infosec #SysAdmin #cybersecurity #Linux #infosec #devsecops #devops #developer #sysadmin #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #ethicalhacking #cybersecurityawareness #cybersecurity #cybersecuritynews #cybersecuritytips #python #hacker #linux #kali #ubuntu #debian #ukraine #spain #ireland #unitedkingdom #canada #finland #estonia #lithuania #ireland #hungary #denmark #norway #malta

    Post summary

    CVE‑2026‑17248 describes a DoS flaw in IBM i 7.3‑7.6 stemming from improper OS command neutralization; the vulnerability carries a CVSS score of 7.1, and no patch has been released yet.

    00000105
    1.0K followersView on X
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    CVE-2026-17248 - DoS in IBM i 7.3-7.6 via improper OS command neutralization. Remote authenticated attacker can crash systems. CVSS 7.1. No patch yet - monitor advisory. #CVE #IBM #infosec https://www.valtersit.com/cve/CVE-2026-17248 #infosec #CVE #infosec #SysAdmin #cybersecurity #Linux #infosec #devsecops #devops #developer #sysadmin #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #ethicalhacking #cybersecurityawareness #cybersecurity #cybersecuritynews #cybersecuritytips #python #hacker #linux #kali #ubuntu #debian #ukraine #spain #ireland #unitedkingdom #canada #finland #estonia #lithuania #ireland #hungary #denmark #norway #malta

    Post summary

    The post announces CVE‑2026‑17248, a DoS flaw in IBM i 7.3‑7.6, provides technical details and CVSS score, and notes that no patch is available yet.

    0000096
    1.0K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-17248 Denial of Service in IBM i 7.6, 7.5, 7.4, 7.3 via OS Command Injection https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-17248

    Post summary

    The post announces CVE-2026-17248 as a denial‑of‑service flaw in IBM i via OS command injection, listing affected versions but offering no evidence of exploitation or remediation.

    00000101
    4.1K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appibmi---

Explore more