IBM i Access Family 1.1.5.0 through 1.1.9.12 IBM i Access Client Solutions (ACS) is vulnerable to remote code execution when configured to listen for requests from IBM i Navigator.

Project Subscriptions

Vendors Products
I Access Family Subscribe
Advisories

No advisories yet.

Fixes

Solution

The issue can be fixed by upgrading to version 1.1.9.13 or later.   See https://www.ibm.com/mysupport/s/fix-information?legacy=SJ09731 7.5SJ09729 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ09729 7.4SJ09730 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ09730 7.3SJ09732 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ09732


Workaround

No workaround given by the vendor.

History

Mon, 01 Jun 2026 19:00:00 +0000

Type Values Removed Values Added
Description IBM i Access Family 1.1.5.0 through 1.1.9.12 IBM i Access Client Solutions (ACS) is vulnerable to remote code execution when configured to listen for requests from IBM i Navigator.
Title IBM i Access Client Solutions (ACS) is vulnerable to remote code execution when configured to listen for requests from IBM i Navigator
First Time appeared Ibm
Ibm i Access Family
Weaknesses CWE-74
CPEs cpe:2.3:a:ibm:i_access_family:1.1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:i_access_family:1.1.9.12:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm i Access Family
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-06-01T17:45:00.983Z

Reserved: 2026-05-04T14:12:38.595Z

Link: CVE-2026-7770

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-01T19:16:54.773

Modified: 2026-06-01T19:16:54.773

Link: CVE-2026-7770

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-01T20:45:25Z

Weaknesses