CVE-2026-13476: IBM Informix Wire Listener Vulnerable to Unauthenticated Remote Code Execution
IBM Informix could allow an unauthenticated user to execute arbitrary commands with service account privileges on the system due to improper validation of user supplied input.
Other sources
IBM Informix Dynamic Server 14.10, 15.0, and 12.10 could allow an unauthenticated user to execute arbitrary commands with service account privileges on the system due to improper validation of user supplied input.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Informix Dynamic Serverto a version that resolves this vulnerability.Fixed in 14.10.xC13W13 - Upgrade
Upgrade
IBM Informix Dynamic Serverto a version that resolves this vulnerability.Fixed in 15.0.1.13 - Compensating control
Until the IBM Informix upgrade is applied, restrict access to the Informix wire listener/network service so unauthenticated users cannot reach it.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13476?
CVE-2026-13476 has a high severity rating of 7.3.
How do I fix CVE-2026-13476?
To fix CVE-2026-13476, ensure that you update to the latest version of IBM Informix Dynamic Server that addresses this vulnerability.
What type of vulnerability is CVE-2026-13476?
CVE-2026-13476 is an OS Command Injection vulnerability that allows unauthenticated remote code execution.
What versions of IBM Informix are affected by CVE-2026-13476?
CVE-2026-13476 affects IBM Informix Dynamic Server versions 12.10, 14.10, and 15.0.
Can an attacker exploit CVE-2026-13476 without authentication?
Yes, an attacker can exploit CVE-2026-13476 as it allows unauthenticated users to execute arbitrary commands.