CVE-2026-8855
קריטית 9.8
תיאור (מקור, אנגלית)
IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-5/8/2026
- CWE
- CWE-94
מוצרים מושפעים
ibm: http server; ibm: aix; ibm: z\/os; linux: linux kernel; microsoft: windows
קישורים
- https://www.ibm.com/support/pages/node/7274065 Vendor Advisory