CVE-2026-17619: The IBM Platform RTM is affected by an SQL injection vulnerability
IBM Platform RTM is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Platform RTMto a version that resolves this vulnerability.Fixed in 10.2 build 603092
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The vulnerability is remotely exploitable and requires no privileges or user interaction. An attacker can send specially crafted SQL statements to the affected IBM Platform RTM deployment.
What could an attacker do if exploitation succeeds?
Successful exploitation could allow an attacker to view, add, modify, or delete information in the back-end database. The reported impact includes high confidentiality impact and low integrity and availability impact.