CVE-2026-19449: IBM AIX vulnerability
Published Aug 15, 2026
·Updated
AIX has a vulnerability in cmdnim that may allow an unprivileged local user to executes the payload as root.
Affected Software
3 affected components
IBM AIX<=7.2
IBM AIX<=7.3
IBM PowerVM VIOS<=4.1
Event History
Aug 15, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Who can exploit this issue?
An unprivileged local user may be able to exploit the vulnerability. The provided information does not indicate that it is remotely exploitable.
2
What level of access could exploitation provide?
Successful exploitation may cause an attacker-controlled payload to execute as root, resulting in root-level privileges.
3
Which products should be assessed?
Assess IBM AIX systems and IBM PowerVM VIOS systems, as both are listed as affected software.