Aller au contenu
CodeAuditAgent

CVE-2026-16687

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execution, giving the attacker full control over the managed system, resulting in a confidentiality, integrity, and availability impact.

Faiblesse

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execution, giving the attacker full control over the managed system, resulting in a confidentiality, integrity, and availability impact.

Produits concernés

  • ibm power_system_e1180_\(9080-heu\)_firmware
  • ibm power_system_e1180_\(9080-heu\)
  • ibm power_system_e1080_\(9080-hex\)_firmware
  • ibm power_system_e1080_\(9080-hex\)
  • ibm power_system_s922_\(9009-22g\)_firmware
  • ibm power_system_s922_\(9009-22g\)
  • ibm power_system_h922_\(9223-22s\)_firmware
  • ibm power_system_h922_\(9223-22s\)

Références

Trouvez la faille avant un attaquant.

Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.