PT-2026-65527 · Ibm · Openbmc

CVE-2026-7868

·

Published

2026-07-28

·

Updated

2026-07-28

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM OPENBMC versions FW1110.00 through FW1110.20 IBM OPENBMC versions FW1060.00 through FW1060.71
Description Incorrect authorization allows users with ReadOnly permissions to escalate their privileges and grant themselves administrator access.
Recommendations Update IBM OPENBMC versions FW1110.00 through FW1110.20 to the latest Power System update. Update IBM OPENBMC versions FW1060.00 through FW1060.71 to the latest Power System update.

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-7868

Affected Products

Openbmc