CVE-2026-8636

IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 allows an attacker to retrieve user passwords and cryptographic keys from memory. Attacker canĀ use the same keys to decrypt password, gain access to the application and access sensitiveĀ data in the database.
References
Link Resource
https://www.ibm.com/support/pages/node/7276609 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:datacap:9.1.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datacap:9.1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datacap:9.1.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datacap_navigator:9.1.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datacap_navigator:9.1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datacap_navigator:9.1.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-22 16:16

Updated : 2026-06-26 21:20


NVD link : CVE-2026-8636

Mitre link : CVE-2026-8636

CVE.ORG link : CVE-2026-8636


JSON object : View

Products Affected

ibm

  • datacap
  • datacap_navigator
CWE
CWE-316

Cleartext Storage of Sensitive Information in Memory