IBM HTTP Server Vulnerable to DoS and Code Execution Attacks (ibm.com)
0xBASE INTEL BRIEF
- CVE-2026-9170 (CVSS 9.8) allows unauthenticated remote code execution.
- CVE-2026-8855 (CVSS 8.1) affects TLS configurations with client authentication.
- Affected versions: IBM HTTP Server 8.5 and 9.0.
"IBM HTTP Server (versions 8.5 and 9.0) is affected by multiple vulnerabilities including denial of service and remote code execution. The most critical (CVE-2026-9170) has a CVSS score of 9.8. IBM recommends applying an interim fix or upgrading to a later fix pack."
#IBM HTTP Server
#Security vulnerabilities
#Denial of service
no comments yet.