Description
IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows ReadOnly users to escalate privileges and give themselves administrator privileges.
Published: 2026-07-28
Score: 6.5 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Solution

Customers with the products below should install FW1110.30(1110_145) or newer to remediate this vulnerability. Power 11 1) IBM Power System S1122 (9824-22A) 2) IBM Power System S1124 (9824-42A) 3) IBM Power System S1122s (9824-22B) 4) IBM Power System S1114 (9824-41B) 5) IBM Power System L1122 (9856-22H) 6) IBM Power System L1124 (9856-42H) 7) IBM Power System E1150 (9043-MRU) Customers with the products below should install FW1060.72(1060_177), FW1060.80(1060_185) or newer to remediate this vulnerability. Power 10 1) IBM Power System S1022 (9105-22A) 2) IBM Power System S1024 (9105-42A) 3) IBM Power System S1022s (9105-22B) 4) IBM Power System S1014 (9105-41B) 5) IBM Power System L1022 (9786-22H) 6) IBM Power System L1024 (9786-42H) 7) IBM Power System E1050 (9043-MRX) 8) IBM Power System S1012 (9028-21B) The images mentioned above can be located at IBM Fix Central : https://www.ibm.com/support/fixcentral/


Vendor Workaround

After applying this fix, ensure local BMC user accounts are as intended.  You can use the BMC's ASMI web application > Security and access > User management to view BMC accounts.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 28 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Description IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows ReadOnly users to escalate privileges and give themselves administrator privileges.
Title This Power System update is being released to address incorrect authorization
First Time appeared Ibm
Ibm openbmc
Weaknesses CWE-863
CPEs cpe:2.3:a:ibm:openbmc:fw1060.00.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1060.00:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1060.71.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1060.71:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1110.00.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1110.00:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1110.20.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openbmc:fw1110.20:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm openbmc
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-07-28T17:36:01.738Z

Reserved: 2026-05-05T14:00:11.372Z

Link: CVE-2026-7868

cve-icon Vulnrichment

Updated: 2026-07-28T17:35:56.878Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses