Skip to content
Critical Vulnerability in IBM Db2 Allows Remote File Write

Critical Vulnerability in IBM Db2 Allows Remote File Write

First seen 15 Sep 2026, 01:50 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 15, 2026 at 04:21 UTC
  • CVE-2026-15955 affects IBM Db2 versions 11.5.0-11.5.9 and 12.1.0-12.1.5.
  • Vulnerability allows remote attackers to perform arbitrary file writes.
  • IBM has released security updates; immediate application is recommended.

IBM Db2 versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.5 are vulnerable to a remote file write due to improper path validation, identified as CVE-2026-15955. This vulnerability can be exploited by unauthenticated remote attackers, allowing them to alter files on the host, which may lead to service disruption or further compromise. The attack vector is network-based, requiring low complexity and no existing privileges, making it particularly dangerous for internet-facing services. Organizations using JDBC/SQLJ connectivity from shared application servers or middleware are at heightened risk. IBM has released security updates to remediate this issue, and customers are urged to apply them promptly. The vulnerability was published on September 14, 2026, and is classified with a CVSS base score of 7.5, indicating a high severity level.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-14
CVE-2026-15955 published
IBM disclosed a vulnerability in Db2 allowing arbitrary file writes due to improper path validation.
IBM
2026-09-15
Security updates released
IBM released updates for Db2 versions 11.5.9 and 12.1.5 to remediate the vulnerability.
IBM
2026-09-15
Vulnerability reported by Redpacketsecurity
Redpacketsecurity highlighted the risk and potential impact of CVE-2026-15955 on Db2 deployments.
Redpacketsecurity

More articles in this cluster (2)

Following this threat?

Track IBM and CVE-2026-15955 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed