PT-2026-65527 · Ibm · Openbmc
CVE-2026-7868
·
Published
2026-07-28
·
Updated
2026-07-28
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM OPENBMC versions FW1110.00 through FW1110.20
IBM OPENBMC versions FW1060.00 through FW1060.71
Description
Incorrect authorization allows users with ReadOnly permissions to escalate their privileges and grant themselves administrator access.
Recommendations
Update IBM OPENBMC versions FW1110.00 through FW1110.20 to the latest Power System update.
Update IBM OPENBMC versions FW1060.00 through FW1060.71 to the latest Power System update.
Fix
Incorrect Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openbmc