ZeroHour

CVE-2026-8855

CVSS 3.1
9.8 critical
EPSS
<1%p38
Published
()
Modified
Description

IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).

Vendors
ibm
Products
http server
Weakness
CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.