CVE-2026-18847

8.8

IBM · i

IBM i 7.3 through 7.6 contains an origin validation error that could allow an attacker to bypass security controls via a malicious request.

Executive summary

An origin validation error in IBM i versions 7.3 through 7.6 could allow an attacker to bypass security mechanisms, leading to unauthorized actions.

Vulnerability

This vulnerability is an origin validation error (CWE-346) that fails to correctly verify the source of requests. The vulnerability is network accessible and requires user interaction to facilitate the attack, but it does not require prior authentication by the attacker.

Business impact

The CVSS score of 8.8 highlights the severity of this issue, as it permits unauthorized access and potential manipulation of system functions. By exploiting this validation error, an attacker could perform actions on behalf of a legitimate user, leading to significant data loss or unauthorized configuration changes.

Remediation

Immediate Action: Apply the relevant PTF patches provided by IBM to remediate the validation flaw: SJ10887 for 7.6, SJ10888 for 7.5, SJ10890 for 7.4, and SJ10891 for 7.3.

Proactive Monitoring: Monitor network traffic and application logs for suspicious requests that originate from unexpected sources or contain malformed origin headers.

Compensating Controls: Educate users on the risks of clicking suspicious links and utilize browser based security policies to mitigate the impact of cross site request related attacks.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Addressing this origin validation vulnerability is essential to protecting system integrity. Administrators should apply the vendor patches immediately to prevent unauthorized actors from leveraging this flaw to bypass security controls.

More IBM CVEs