← Back to CVE search

CVE-2026-8855

IBM HTTP Server

Description

IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).

CVSS 8.1EPSS 0.45599999999999996%Risk 0.84
View source
Published
2026-05-26 18:16:57
Affected versions
<=8.5,<=9.0
Type
Core software
Last modified
2026-07-23 11:10:00
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows; Linux