{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/documentation-offline-1.0.0-through-1.4.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":9.8,"id":"CVE-2026-17482"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Documentation Offline (1.0.0 through 1.4.1)"],"_cs_severities":["critical"],"_cs_tags":["vulnerability","rce","cve"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM Documentation Offline versions 1.0.0 through 1.4.1 contain a critical security vulnerability, tracked as CVE-2026-17482. The vulnerability arises from improper control of file paths, classified under CWE-73 (External Control of File Name or Path). This flaw allows a remote, unauthenticated attacker to manipulate file paths to achieve arbitrary code execution on the underlying host system. Given the CVSS v3.1 score of 9.8, this vulnerability poses a significant risk to organizations deploying this software, as it does not require user interaction or elevated privileges for successful exploitation. IBM has documented this flaw and users are advised to review the official support documentation for remediation steps.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eThe attacker identifies an instance of IBM Documentation Offline exposed to the network.\u003c/li\u003e\n\u003cli\u003eThe attacker crafts a malicious request containing manipulated file paths targeting the application's file handling functionality.\u003c/li\u003e\n\u003cli\u003eThe request is submitted to the application's web interface or relevant input vector without authentication.\u003c/li\u003e\n\u003cli\u003eThe application processes the malicious input due to improper path validation.\u003c/li\u003e\n\u003cli\u003eThe attacker successfully traverses outside intended directory boundaries to write or execute an arbitrary file on the system.\u003c/li\u003e\n\u003cli\u003eThe system executes the attacker-controlled code, leading to full system compromise.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-17482 grants an attacker the ability to execute arbitrary code with the privileges of the application process. This can lead to complete system compromise, unauthorized access to sensitive data, and potential lateral movement within the environment. Given the nature of the application as documentation software, it may be deployed in various corporate environments, increasing the potential attack surface.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReview all deployments of IBM Documentation Offline to identify systems running versions 1.0.0 through 1.4.1.\u003c/li\u003e\n\u003cli\u003eConsult the official IBM security advisory (\u003ca href=\"https://www.ibm.com/support/pages/node/7283484\"\u003ehttps://www.ibm.com/support/pages/node/7283484\u003c/a\u003e) to determine available patches or mitigation configurations.\u003c/li\u003e\n\u003cli\u003eRestrict network access to IBM Documentation Offline instances to authorized personnel only, specifically limiting exposure from the public internet.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-13T22:05:03Z","date_published":"2026-08-13T22:05:03Z","id":"https://feed.craftedsignal.io/briefs/2026-08-ibm-documentation-offline/","summary":"IBM Documentation Offline versions 1.0.0 through 1.4.1 are vulnerable to remote code execution due to improper control of file paths (CVE-2026-17482), allowing unauthenticated attackers to compromise affected systems.","title":"Remote Code Execution in IBM Documentation Offline","url":"https://feed.craftedsignal.io/briefs/2026-08-ibm-documentation-offline/"}],"language":"en","title":"CraftedSignal Threat Feed - Documentation Offline (1.0.0 Through 1.4.1)","version":"https://jsonfeed.org/version/1.1"}