VendorsIBMi7.4
Vulnerabilities

IBM I 7.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

150CVEs
CVE-2026-17099
IBM i is Affected By Multiple Vulnerabilities in Navigator for i
Published 2026-08-13 · Analyzed
7.3EPSS 0.005
CVE-2023-23470
IBM i privilege escalation
Published 2023-05-04 · Modified
7.2EPSS 0.005
CVE-2026-17094
IBM i is Affected By Path Traversal Vulnerability in Navigator for i
Published 2026-08-12 · Analyzed
7.1EPSS 0.005
CVE-2026-16896
IBM i is Affected By Multiple Vulnerabilities in Network Authentication Service
Published 2026-08-13 · Analyzed
7.1EPSS 0.001
CVE-2024-47104
IBM i incorrect privilege assignment
Published 2024-12-18 · Analyzed
6.8EPSS 0.003
CVE-2019-4536
IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror for i might have user profiles with elevated privileges caused by incorrect processing during a restore of multiple user profiles. A user with restore privileges could exploit this vulnerability to obtain elevated privileges on the restored system. IBM X-Force ID: 165592.
Published 2019-08-29 · Modified
6.7EPSS 0.003
CVE-2021-39056
The IBM i 7.1, 7.2, 7.3, and 7.4 Extended Dynamic Remote SQL server (EDRSQL) could allow a remote authenticated user to send a specially crafted request and cause a denial of service. IBM X-Force ID: 214537.
Published 2022-01-13 · Modified
6.5EPSS 0.013
CVE-2026-16692
IBM i is Affected By Multiple Vulnerabilities in Simple Mail Transfer Protocol
Published 2026-08-13 · Analyzed
6.5EPSS 0.005
CVE-2026-16929
IBM i is Affected By Multiple Vulnerabilities in Host Servers
Published 2026-08-13 · Undergoing Analysis
6.5EPSS 0.004
CVE-2026-18715
IBM i is Affected By Multiple Vulnerabilities in WebSphere Application Server Liberty
Published 2026-08-13 · Undergoing Analysis
6.5EPSS 0.004
CVE-2026-16878
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
6.5EPSS 0.004
CVE-2024-52895
IBM i denial of service
Published 2025-02-14 · Analyzed
6.5EPSS 0.004
CVE-2026-18671
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Undergoing Analysis
6.5EPSS 0.004
CVE-2026-17259
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
6.5EPSS 0.004
CVE-2026-17273
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
6.5EPSS 0.004
CVE-2026-18078
IBM i is Affected By Denial of Service Vulnerability in Save Restore []
Published 2026-09-04 · Analyzed
6.5EPSS 0.003
CVE-2026-18076
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
6.5EPSS 0.003
CVE-2026-18887
IBM i is Affected By Sensitive Information Exposure Vulnerability in PASE []
Published 2026-09-04 · Analyzed
6.5EPSS 0.003
CVE-2025-36371
IBM i Information Disclosure
Published 2025-11-19 · Analyzed
6.5EPSS 0.003
CVE-2026-16694
IBM i is Affected By Stored Cross-site Scripting for i
Published 2026-08-12 · Analyzed
6.4EPSS 0.002
CVE-2022-43859
IBM Navigator for i SQL injection
Published 2022-12-22 · Modified
6.3EPSS 0.006
CVE-2019-4450
IBM i 7.2, 7.3, and 7.4 for i is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163492.
Published 2019-11-09 · Modified
6.1EPSS 0.007
CVE-2021-38876
IBM i 7.2, 7.3, and 7.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 208404.
Published 2021-12-30 · Modified
6.1EPSS 0.006
CVE-2026-17270
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
5.5EPSS 0.002
CVE-2026-17469
IBM i is Affected By Denial of Service Vulnerabilities in Line Printer Daemon [, ]
Published 2026-09-04 · Analyzed
5.5EPSS 0.002
CVE-2024-51463
IBM i server-side request forgery
Published 2024-12-21 · Modified
5.41 PoCEPSS 0.009
CVE-2022-34358
IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 230516.
Published 2022-07-13 · Modified
5.4EPSS 0.005
CVE-2026-17226
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.4EPSS 0.004
CVE-2025-2950
IBM i improper HTTP header neutralization
Published 2025-04-18 · Analyzed
5.4EPSS 0.003
CVE-2026-16892
IBM i is Affected By An Improper Authentication Vulnerability in Network Authentication Service []
Published 2026-09-04 · Analyzed
5.4EPSS 0.003
CVE-2025-3218
IBM i improper certificate validation
Published 2025-05-07 · Analyzed
5.4EPSS 0.003
CVE-2026-17274
IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published 2026-09-04 · Analyzed
5.4EPSS 0.002
CVE-2024-55896
IBM PowerHA SystemMirror for i clickjacking
Published 2025-01-03 · Analyzed
5.4EPSS 0.002
CVE-2022-22481
IBM Navigator for i 7.2, 7.3, and 7.4 (heritage version) could allow a remote attacker to obtain access to the web interface without valid credentials. By modifying the sign on request, an attacker can gain visibility to the fully qualified domain name of the target system and the navigator tasks page, however they do not gain the ability to perform those tasks on the system or see any specific system data. IBM X-Force ID: 225899.
Published 2022-05-09 · Modified
5.3EPSS 0.012
CVE-2026-17076
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17077
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17078
IBM i is Affected By A Denial of Service Vulnerability in DRDA / DDM []
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17212
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-17216
IBM i is Affected By Multiple Vulnerabilities in DRDA / DDM
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
CVE-2026-18020
IBM i is Affected By Multiple Vulnerabilities in NetServer
Published 2026-08-13 · Analyzed
5.3EPSS 0.005
← Prev3 / 4Next →