PT-2026-36207 · Ibm · Ibm I

Published

2026-04-30

·

Updated

2026-04-30

·

CVE-2026-2311

CVSS v3.1

6.4

Medium

VectorAV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM i versions 7.2 through 7.6
Description An invalid authorization check in the IBM i Web Administration GUI allows for privilege escalation. This flaw enables a malicious actor to execute user-controlled code with administrator privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-2311

Affected Products

Ibm I