IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power environments (HMC and Novalink) could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7278667 |
|
History
Thu, 30 Jul 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Jul 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power environments (HMC and Novalink) could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input. | |
| Title | This Power Hardware Management Console update is being released to address | |
| First Time appeared |
Ibm
Ibm hmc V10310500 Ibm hmc V11111100 |
|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:ibm:hmc_v10310500:10.3.1050.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:hmc_v10310500:10.3.1064.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:hmc_v11111100:11.1.1110.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:hmc_v11111100:11.1.1112.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm hmc V10310500 Ibm hmc V11111100 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-07-31T03:56:18.697Z
Reserved: 2026-06-22T19:55:16.119Z
Link: CVE-2026-12943
Updated: 2026-07-30T18:39:31.353Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-31T19:30:04Z