Description
IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
Published: 2024-10-29
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-41548 IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
History

Wed, 03 Dec 2025 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Ibm ess 5000 \(5105-22e\)
Ibm ess 5000 \(5105-22e\) Firmware
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E850 \(8408-e8e\)
Ibm power System E850 \(8408-e8e\) Firmware
Ibm power System E850c \(8408-44e\)
Ibm power System E850c \(8408-44e\) Firmware
Ibm power System E870 \(9119-mme\)
Ibm power System E870 \(9119-mme\) Firmware
Ibm power System E870c \(9080-mme\)
Ibm power System E870c \(9080-mme\) Firmware
Ibm power System E880 \(9119-mhe\)
Ibm power System E880 \(9119-mhe\) Firmware
Ibm power System E880c \(9080-mhe\)
Ibm power System E880c \(9080-mhe\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22h\)
Ibm power System H922 \(9223-22h\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42h\)
Ibm power System H924 \(9223-42h\) Firmware
Ibm power System H924 \(9223-42s\)
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System L922 \(9008-22l\)
Ibm power System L922 \(9008-22l\) Firmware
Ibm power System S812 \(8284-21a\)
Ibm power System S812 \(8284-21a\) Firmware
Ibm power System S812l \(8247-21l\)
Ibm power System S812l \(8247-21l\) Firmware
Ibm power System S814 \(8286-41a\)
Ibm power System S814 \(8286-41a\) Firmware
Ibm power System S822 \(8284-22a\)
Ibm power System S822 \(8284-22a\) Firmware
Ibm power System S822l \(8247-22l\)
Ibm power System S822l \(8247-22l\) Firmware
Ibm power System S824 \(8286-42a\)
Ibm power System S824 \(8286-42a\) Firmware
Ibm power System S824l \(8247-42l\)
Ibm power System S824l \(8247-42l\) Firmware
Ibm power System S914 \(9009-41a\)
Ibm power System S914 \(9009-41a\) Firmware
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22a\)
Ibm power System S922 \(9009-22a\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42a\)
Ibm power System S924 \(9009-42a\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware
CPEs cpe:2.3:h:ibm:ess_5000_\(5105-22e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e1080_\(9080-hex\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e850_\(8408-e8e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e850c_\(8408-44e\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e870_\(9119-mme\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e870c_\(9080-mme\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e880_\(9119-mhe\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e880c_\(9080-mhe\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e950_\(9040-mr9\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e980_\(9080-m9s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h922_\(9223-22h\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h922_\(9223-22s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h924_\(9223-42h\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h924_\(9223-42s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_l922_\(9008-22l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s812_\(8284-21a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s812l_\(8247-21l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s814_\(8286-41a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s822_\(8284-22a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s822l_\(8247-22l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s824_\(8286-42a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s824l_\(8247-42l\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s914_\(9009-41a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s914_\(9009-41g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s922_\(9009-22a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s922_\(9009-22g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s924_\(9009-42a\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s924_\(9009-42g\):-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:ess_5000_\(5105-22e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e1080_\(9080-hex\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e850_\(8408-e8e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e850c_\(8408-44e\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e870_\(9119-mme\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e870c_\(9080-mme\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e880_\(9119-mhe\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e880c_\(9080-mhe\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e950_\(9040-mr9\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e980_\(9080-m9s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h922_\(9223-22h\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h922_\(9223-22s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h924_\(9223-42h\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h924_\(9223-42s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_l922_\(9008-22l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s812_\(8284-21a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s812l_\(8247-21l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s814_\(8286-41a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s822_\(8284-22a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s822l_\(8247-22l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s824_\(8286-42a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s824l_\(8247-42l\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s914_\(9009-41a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s914_\(9009-41g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s922_\(9009-22a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s922_\(9009-22g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s924_\(9009-42a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s924_\(9009-42g\)_firmware:*:*:*:*:*:*:*:*
Vendors & Products Ibm ess 5000 \(5105-22e\)
Ibm ess 5000 \(5105-22e\) Firmware
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E850 \(8408-e8e\)
Ibm power System E850 \(8408-e8e\) Firmware
Ibm power System E850c \(8408-44e\)
Ibm power System E850c \(8408-44e\) Firmware
Ibm power System E870 \(9119-mme\)
Ibm power System E870 \(9119-mme\) Firmware
Ibm power System E870c \(9080-mme\)
Ibm power System E870c \(9080-mme\) Firmware
Ibm power System E880 \(9119-mhe\)
Ibm power System E880 \(9119-mhe\) Firmware
Ibm power System E880c \(9080-mhe\)
Ibm power System E880c \(9080-mhe\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22h\)
Ibm power System H922 \(9223-22h\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42h\)
Ibm power System H924 \(9223-42h\) Firmware
Ibm power System H924 \(9223-42s\)
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System L922 \(9008-22l\)
Ibm power System L922 \(9008-22l\) Firmware
Ibm power System S812 \(8284-21a\)
Ibm power System S812 \(8284-21a\) Firmware
Ibm power System S812l \(8247-21l\)
Ibm power System S812l \(8247-21l\) Firmware
Ibm power System S814 \(8286-41a\)
Ibm power System S814 \(8286-41a\) Firmware
Ibm power System S822 \(8284-22a\)
Ibm power System S822 \(8284-22a\) Firmware
Ibm power System S822l \(8247-22l\)
Ibm power System S822l \(8247-22l\) Firmware
Ibm power System S824 \(8286-42a\)
Ibm power System S824 \(8286-42a\) Firmware
Ibm power System S824l \(8247-42l\)
Ibm power System S824l \(8247-42l\) Firmware
Ibm power System S914 \(9009-41a\)
Ibm power System S914 \(9009-41a\) Firmware
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22a\)
Ibm power System S922 \(9009-22a\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42a\)
Ibm power System S924 \(9009-42a\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00096}

epss

{'score': 0.00102}


Tue, 29 Oct 2024 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 29 Oct 2024 01:00:00 +0000

Type Values Removed Values Added
Description IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.
Title IBM Flexible Service Processor hard coded credentials
First Time appeared Ibm
Ibm power9 System Firmware
Weaknesses CWE-798
CPEs cpe:2.3:o:ibm:power9_system_firmware:fw1030.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw1050.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw1060.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw860.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power9_system_firmware:fw950.00:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm power9 System Firmware
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Ess 5000 \(5105-22e\) Ess 5000 \(5105-22e\) Firmware Power9 System Firmware Power System E1080 \(9080-hex\) Power System E1080 \(9080-hex\) Firmware Power System E850 \(8408-e8e\) Power System E850 \(8408-e8e\) Firmware Power System E850c \(8408-44e\) Power System E850c \(8408-44e\) Firmware Power System E870 \(9119-mme\) Power System E870 \(9119-mme\) Firmware Power System E870c \(9080-mme\) Power System E870c \(9080-mme\) Firmware Power System E880 \(9119-mhe\) Power System E880 \(9119-mhe\) Firmware Power System E880c \(9080-mhe\) Power System E880c \(9080-mhe\) Firmware Power System E950 \(9040-mr9\) Power System E950 \(9040-mr9\) Firmware Power System E980 \(9080-m9s\) Power System E980 \(9080-m9s\) Firmware Power System H922 \(9223-22h\) Power System H922 \(9223-22h\) Firmware Power System H922 \(9223-22s\) Power System H922 \(9223-22s\) Firmware Power System H924 \(9223-42h\) Power System H924 \(9223-42h\) Firmware Power System H924 \(9223-42s\) Power System H924 \(9223-42s\) Firmware Power System L922 \(9008-22l\) Power System L922 \(9008-22l\) Firmware Power System S812 \(8284-21a\) Power System S812 \(8284-21a\) Firmware Power System S812l \(8247-21l\) Power System S812l \(8247-21l\) Firmware Power System S814 \(8286-41a\) Power System S814 \(8286-41a\) Firmware Power System S822 \(8284-22a\) Power System S822 \(8284-22a\) Firmware Power System S822l \(8247-22l\) Power System S822l \(8247-22l\) Firmware Power System S824 \(8286-42a\) Power System S824 \(8286-42a\) Firmware Power System S824l \(8247-42l\) Power System S824l \(8247-42l\) Firmware Power System S914 \(9009-41a\) Power System S914 \(9009-41a\) Firmware Power System S914 \(9009-41g\) Power System S914 \(9009-41g\) Firmware Power System S922 \(9009-22a\) Power System S922 \(9009-22a\) Firmware Power System S922 \(9009-22g\) Power System S922 \(9009-22g\) Firmware Power System S924 \(9009-42a\) Power System S924 \(9009-42a\) Firmware Power System S924 \(9009-42g\) Power System S924 \(9009-42g\) Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-11-02T03:55:32.353Z

Reserved: 2024-09-03T13:50:26.296Z

Link: CVE-2024-45656

cve-icon Vulnrichment

Updated: 2024-10-29T12:49:47.731Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-29T01:15:03.823

Modified: 2025-12-03T18:14:19.413

Link: CVE-2024-45656

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses