CVE-2026-18515
EUVD-2026-7776214.09.2026, 19:17
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to place files into the file system with Navigator for i when they should be blocked by Navigator configuration. This could allow attackers to upload files onto the system to places the Navigator support did not intend, but only if the profile could already do that by itself.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| ibm | i | 7.6 | CNA |
| ibm | i | 7.5 | CNA |
| ibm | i | 7.4 | CNA |
| ibm | i | 7.3 | CNA |