CVE-2026-9744
IBM Netezza Software 11.3.0.3 through Interim Fix 002 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 5.3
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
- EPSS probability
- 0.11%
- CWE
- CWE-297
- Published
- 2026-09-03
- Last modified
- 2026-09-04
Affected products
- IBM Netezza Software
Weakness type
Related vulnerabilities
- CVE-2026-79636 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-84197 — In Eclipse Ditto's Node.js JavaScript client, all released versions of...
- CVE-2026-84393 — A improper validation of certificate with host mismatch vulnerability in Fortinet FortiOS 7.6.1...
- CVE-2026-79943 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-62243 — Netty 4.2.0 through 4.2.16 TLS Hostname Verification Bypass
- CVE-2026-53583 — libgit2: Inverted IP SubjectAltName Comparison in OpenSSL Backend
- CVE-2026-49457 — QUIC has Broken TLS verification
- CVE-2026-65942 — Apache Ranger: Clients accept TLS certificates issued for other hostnames