Vulnerability Details CVE-2026-16673
IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization of special characters in the PxPeek name property.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 35.5%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2026-16673
-
cpe:2.3:a:ibm:datastage_on_cloud_pak_for_data:5.4.0