Skip to content
IBM i Vulnerability CVE-2026-84414 Allows File Ownership Changes

IBM i Vulnerability CVE-2026-84414 Allows File Ownership Changes

First seen 29 Sep 2026, 21:04 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 29, 2026 at 21:05 UTC
  • •CVE-2026-84414 affects IBM i versions 7.3 to 7.6, allowing file ownership changes.
  • •Exploitation requires local authenticated access, with potential for privilege escalation.
  • •IBM advises immediate patching and monitoring for unusual file ownership changes.

IBM i versions 7.3 to 7.6 are vulnerable to a local authenticated attack allowing file ownership changes due to improper validation of file paths (CVE-2026-84414). This vulnerability has a CVSS base score of 7.8, indicating high severity. Attackers with local access can exploit this flaw to potentially escalate privileges or tamper with sensitive data. IBM recommends users upgrade to supported versions and apply corrective patches. The urgency of exploitation is unclear, as no evidence of widespread exploitation has been reported. Organizations using IBM i systems should monitor for unexpected file ownership changes and review audit records. The vulnerability was published on September 29, 2026.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-29
CVE-2026-84414 published
IBM disclosed a vulnerability in IBM i that allows local attackers to change file ownership.
IBM

More articles in this cluster (2)

Following this threat?

Track IBM and CVE-2026-84414 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed