Documentation Offline IBM Documentation Offline

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in IBM Documentation Offline.

By the Year

In 2026 there have been 5 vulnerabilities in IBM Documentation Offline with an average score of 7.1 out of ten.

Year Vulnerabilities Average Score
2026 5 7.14

It may take a day or so for new Documentation Offline vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent IBM Documentation Offline Security Vulnerabilities

IBM Doc Offline 1.01.4.1 RCE via improper file path control
CVE-2026-17482 9.8 - Critical - August 13, 2026

IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths.

External Control of File Name or Path

IBM Doc Offline <1.5.0: Remote ACE via Log Injection
CVE-2026-17481 8.8 - High - August 13, 2026

IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper output neutralization for logs.

Improper Output Neutralization for Logs

IBM Documentation Offline 1.0.0-1.4.1 Path Traversal Arbitrary File Read
CVE-2026-17473 7.5 - High - August 13, 2026

IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted directory.

Directory traversal

IBM Documentation Offline 1.0.0-1.4.1: Hardcoded key allows session token forge
CVE-2026-17468 5.3 - Medium - August 13, 2026

IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key.

Use of Hard-coded Cryptographic Key

IBM Documentation 1.0.0-1.4.1 IP Bind Misconfiguration
CVE-2026-16713 4.3 - Medium - August 13, 2026

IBM Documentation Offline 1.0.0 through 1.4.1 IBM Documentation could allow a remote attacker to obtain sensitive information due to a security misconfiguration where the documentation server binds to an unrestricted IP address.

Binding to an Unrestricted IP Address

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for IBM Documentation Offline or by IBM? Click the Watch button to subscribe.

IBM
Vendor

subscribe