CVE-2026-4788
published 2026-04-08CVE-2026-4788: IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
PriorityP424medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.12%
1.9th percentile
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | tivoli_netcool_impact | >= 7.1.0.0 < 7.1.0.38 | 7.1.0.38 |
| ibm | tivoli_netcool_impact | 7.1.0.0 – 7.1.0.37 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
IBM Tivoli Netcool Impact up to 7.1.0.37 log file (CNNVD-202604-1893)
vuldb·2026-04-10·CVSS 8.4
CVE-2026-4788 [HIGH] IBM Tivoli Netcool Impact up to 7.1.0.37 log file (CNNVD-202604-1893)
A vulnerability labeled as problematic has been found in IBM Tivoli Netcool Impact up to 7.1.0.37. This vulnerability affects unknown code. The manipulation results in sensitive information in log files.
This vulnerability is cataloged as CVE-2026-4788. The attack must be initiated from a local position. There is no exploit available.
The affected component should be upgraded.
GHSA
GHSA-58gv-j5qc-234v: IBM Tivoli Netcool Impact 7
ghsa_unreviewed·2026-04-08
CVE-2026-4788 [HIGH] CWE-532 GHSA-58gv-j5qc-234v: IBM Tivoli Netcool Impact 7
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-04-08
Published