Vulnerability Details CVE-2026-8835
IBM HTTP Server 8.5, and 9.0 is vulnerable to invalid pointer dereference. A privileged user, authenticated to the Administration Server, could exploit this vulnerability to expose sensitive information or cause a denial of service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 0.6%
CVSS Severity
CVSS v3 Score 7.3
Products affected by CVE-2026-8835
-
cpe:2.3:a:ibm:http_server:8.5.0.0
-
cpe:2.3:a:ibm:http_server:8.5.5.23
-
cpe:2.3:a:ibm:http_server:8.5.5.24
-
cpe:2.3:a:ibm:http_server:8.5.5.6
-
cpe:2.3:a:ibm:http_server:8.5.5.7
-
cpe:2.3:a:ibm:http_server:9.0.0.0
-
cpe:2.3:a:ibm:http_server:9.0.5.15
-
cpe:2.3:a:ibm:http_server:9.0.5.16
-
-
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-