PT-2026-25954 · Ibm · Db2 Recovery Expert

Published

2026-03-16

·

Updated

2026-03-18

·

CVE-2026-3856

CVSS v2.0

9.4

Critical

VectorAV:N/AC:L/Au:N/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM Db2 Recovery Expert for Linux, UNIX and Windows version 5.5 IF 2
Description The software contains an insecure mechanism used for verifying data integrity during transmission, which could allow an attacker to modify or corrupt data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2026-05164
CVE-2026-3856

Affected Products

Db2 Recovery Expert