IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-41548 IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 03 Dec 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Ibm ess 5000 \(5105-22e\)
Ibm ess 5000 \(5105-22e\) Firmware
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E850 \(8408-e8e\)
Ibm power System E850 \(8408-e8e\) Firmware
Ibm power System E850c \(8408-44e\)
Ibm power System E850c \(8408-44e\) Firmware
Ibm power System E870 \(9119-mme\)
Ibm power System E870 \(9119-mme\) Firmware
Ibm power System E870c \(9080-mme\)
Ibm power System E870c \(9080-mme\) Firmware
Ibm power System E880 \(9119-mhe\)
Ibm power System E880 \(9119-mhe\) Firmware
Ibm power System E880c \(9080-mhe\)
Ibm power System E880c \(9080-mhe\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22h\)
Ibm power System H922 \(9223-22h\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42h\)
Ibm power System H924 \(9223-42h\) Firmware
Ibm power System H924 \(9223-42s\)
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System L922 \(9008-22l\)
Ibm power System L922 \(9008-22l\) Firmware
Ibm power System S812 \(8284-21a\)
Ibm power System S812 \(8284-21a\) Firmware
Ibm power System S812l \(8247-21l\)
Ibm power System S812l \(8247-21l\) Firmware
Ibm power System S814 \(8286-41a\)
Ibm power System S814 \(8286-41a\) Firmware
Ibm power System S822 \(8284-22a\)
Ibm power System S822 \(8284-22a\) Firmware
Ibm power System S822l \(8247-22l\)
Ibm power System S822l \(8247-22l\) Firmware
Ibm power System S824 \(8286-42a\)
Ibm power System S824 \(8286-42a\) Firmware
Ibm power System S824l \(8247-42l\)
Ibm power System S824l \(8247-42l\) Firmware
Ibm power System S914 \(9009-41a\)
Ibm power System S914 \(9009-41a\) Firmware
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22a\)
Ibm power System S922 \(9009-22a\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42a\)
Ibm power System S924 \(9009-42a\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware
CPEs cpe:2.3:h:ibm:ess_5000_\(5105-22e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e1080_\(9080-hex\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e850_\(8408-e8e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e850c_\(8408-44e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e870_\(9119-mme\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e870c_\(9080-mme\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e880_\(9119-mhe\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e880c_\(9080-mhe\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e950_\(9040-mr9\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e980_\(9080-m9s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h922_\(9223-22h\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h922_\(9223-22s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h924_\(9223-42h\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h924_\(9223-42s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_l922_\(9008-22l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s812_\(8284-21a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s812l_\(8247-21l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s814_\(8286-41a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s822_\(8284-22a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s822l_\(8247-22l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s824_\(8286-42a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s824l_\(8247-42l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s914_\(9009-41a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s914_\(9009-41g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s922_\(9009-22a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s922_\(9009-22g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s924_\(9009-42a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s924_\(9009-42g\):-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:ess_5000_\(5105-22e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e1080_\(9080-hex\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e850_\(8408-e8e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e850c_\(8408-44e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e870_\(9119-mme\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e870c_\(9080-mme\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e880_\(9119-mhe\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e880c_\(9080-mhe\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e950_\(9040-mr9\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e980_\(9080-m9s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h922_\(9223-22h\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h922_\(9223-22s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h924_\(9223-42h\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h924_\(9223-42s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_l922_\(9008-22l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s812_\(8284-21a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s812l_\(8247-21l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s814_\(8286-41a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s822_\(8284-22a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s822l_\(8247-22l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s824_\(8286-42a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s824l_\(8247-42l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s914_\(9009-41a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s914_\(9009-41g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s922_\(9009-22a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s922_\(9009-22g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s924_\(9009-42a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s924_\(9009-42g\)_firmware:*:*:*:*:*:*:*:*
Vendors & Products Ibm ess 5000 \(5105-22e\)
Ibm ess 5000 \(5105-22e\) Firmware
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E850 \(8408-e8e\)
Ibm power System E850 \(8408-e8e\) Firmware
Ibm power System E850c \(8408-44e\)
Ibm power System E850c \(8408-44e\) Firmware
Ibm power System E870 \(9119-mme\)
Ibm power System E870 \(9119-mme\) Firmware
Ibm power System E870c \(9080-mme\)
Ibm power System E870c \(9080-mme\) Firmware
Ibm power System E880 \(9119-mhe\)
Ibm power System E880 \(9119-mhe\) Firmware
Ibm power System E880c \(9080-mhe\)
Ibm power System E880c \(9080-mhe\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22h\)
Ibm power System H922 \(9223-22h\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42h\)
Ibm power System H924 \(9223-42h\) Firmware
Ibm power System H924 \(9223-42s\)
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System L922 \(9008-22l\)
Ibm power System L922 \(9008-22l\) Firmware
Ibm power System S812 \(8284-21a\)
Ibm power System S812 \(8284-21a\) Firmware
Ibm power System S812l \(8247-21l\)
Ibm power System S812l \(8247-21l\) Firmware
Ibm power System S814 \(8286-41a\)
Ibm power System S814 \(8286-41a\) Firmware
Ibm power System S822 \(8284-22a\)
Ibm power System S822 \(8284-22a\) Firmware
Ibm power System S822l \(8247-22l\)
Ibm power System S822l \(8247-22l\) Firmware
Ibm power System S824 \(8286-42a\)
Ibm power System S824 \(8286-42a\) Firmware
Ibm power System S824l \(8247-42l\)
Ibm power System S824l \(8247-42l\) Firmware
Ibm power System S914 \(9009-41a\)
Ibm power System S914 \(9009-41a\) Firmware
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22a\)
Ibm power System S922 \(9009-22a\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42a\)
Ibm power System S924 \(9009-42a\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00096}

epss

{'score': 0.00102}


Tue, 29 Oct 2024 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 29 Oct 2024 01:00:00 +0000

Type Values Removed Values Added
Description IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
Title IBM Flexible Service Processor hard coded credentials
First Time appeared Ibm
Ibm power9 System Firmware
Weaknesses CWE-798
CPEs cpe:2.3:o:ibm:power9_system_firmware:fw1030.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw1050.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw1060.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw860.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw950.00:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm power9 System Firmware
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-11-02T03:55:32.353Z

Reserved: 2024-09-03T13:50:26.296Z

Link: CVE-2024-45656

cve-icon Vulnrichment

Updated: 2024-10-29T12:49:47.731Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-29T01:15:03.823

Modified: 2025-12-03T18:14:19.413

Link: CVE-2024-45656

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses