IBM Cloud APM, Base Private 8.1.4 and IBM Cloud APM, Advanced Private 8.1.4 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in the data query logic of the Fenced environment.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7273649 |
|
History
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm cloud Application Performance Managemen
|
|
| CPEs | cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:advanced_private:*:*:* cpe:2.3:a:ibm:cloud_application_performance_managemen:8.1.4:*:*:*:base_private:*:*:* |
|
| Vendors & Products |
Ibm cloud Application Performance Managemen
|
Wed, 27 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 27 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Cloud APM, Base Private 8.1.4 and IBM Cloud APM, Advanced Private 8.1.4 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow an authenticated user to cause a denial of service due to improper neutralization of special elements in the data query logic of the Fenced environment. | |
| Title | There are multiple vulnerabilities in IBM DB2 bundled with IBM Application Performance Management products. | |
| First Time appeared |
Ibm
Ibm cloud Apm Advanced Private Ibm cloud Apm Base Private |
|
| Weaknesses | CWE-1284 | |
| CPEs | cpe:2.3:a:ibm:cloud_apm_advanced_private:8.1.4:*:*:*:*:*:*:* cpe:2.3:a:ibm:cloud_apm_base_private:8.1.4:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm cloud Apm Advanced Private Ibm cloud Apm Base Private |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2026-05-27T12:48:42.947Z
Updated: 2026-05-27T14:38:08.383Z
Reserved: 2026-03-06T21:17:59.734Z
Link: CVE-2026-3676
Updated: 2026-05-27T14:37:34.558Z
Status : Analyzed
Published: 2026-05-27T14:16:47.123
Modified: 2026-06-02T19:41:27.343
Link: CVE-2026-3676
No data.