CVE-2026-6721: IBM Concert Software vulnerability
Published Sep 22, 2026
·Updated
IBM Concert allows an unauthenticated remote attacker can supply specially crafted input that is incorporated into OS commands, resulting in arbitrary command execution on the underlying system. Successful exploitation allows remote code execution with the privileges of the affected application.
Affected Software
1 affected component
IBM Concert Software<=1.0.0-3.0.0
Event History
Sep 22, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Which IBM offering should be prioritized for review?
The affected software is identified as IBM Concert Software.
2
What risk rating is assigned to this issue?
The reported risk rating is 85. No severity scale or scoring methodology is provided.
3
When was this issue published?
It was published on 2026-09-22 and was last modified on the same date.