{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3oibmi7.6/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:o:ibm:i:7.6:*:*:*:*:*:*:*","cpe:2.3:o:ibm:i:7.5:*:*:*:*:*:*:*","cpe:2.3:o:ibm:i:7.4:*:*:*:*:*:*:*","cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.1,"id":"CVE-2026-18175"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["IBM i (7.6, 7.5, 7.4, 7.3)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","database-security"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM i versions 7.6, 7.5, 7.4, and 7.3 contain a vulnerability identified as CVE-2026-18175 that impacts the Distributed Data Management (DDM) target dispatcher. The flaw is rooted in improper authorization checks, which can be exploited by a remote, unauthenticated attacker to manipulate database transactions. This unauthorized access could lead to the modification, corruption, or deletion of sensitive data managed by the DDM service, effectively bypassing expected access control constraints. Defenders should prioritize auditing DDM service configurations and restricting network access to the DDM target dispatcher to mitigate the risk of exploitation.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a significant risk to data integrity within environments utilizing IBM i systems. If exploited, an attacker could manipulate database entries without proper credentials, potentially resulting in unauthorized data modification or corruption. Systems exposed to the public internet or untrusted network segments are at the highest risk of compromise.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAudit the use of the DDM service across the IBM i environment to determine if remote access is required.\u003c/li\u003e\n\u003cli\u003eRestrict access to the DDM target dispatcher port to trusted IP addresses or internal subnets via network firewalls.\u003c/li\u003e\n\u003cli\u003eMonitor IBM i logs for unusual transaction activity associated with DDM-connected remote sessions.\u003c/li\u003e\n\u003cli\u003eApply official vendor patches or PTFs provided by IBM as soon as they become available for versions 7.6, 7.5, 7.4, and 7.3.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-04T17:27:37Z","date_published":"2026-09-04T17:27:37Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18175/","summary":"A vulnerability in the IBM i DDM target dispatcher allows remote attackers to manipulate database transactions due to improper authorization handling.","title":"Authorization Bypass in IBM i DDM Target Dispatcher","url":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18175/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:o:ibm:i:7.6:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}