Description
IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execution, giving the attacker full control over the managed system, resulting in a confidentiality, integrity, and availability impact.
Published: 2026-08-19
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

IBM Power Systems Firmware contains a buffer overflow vulnerability in the ASMI web interface that allows an unauthenticated attacker with network access to send a malformed request and achieve arbitrary code execution, granting full control over the managed system and compromising confidentiality, integrity, and availability.

Affected Systems

Affected hardware includes IBM Power System families Power 11, Power 10, and Power 9. Specific models are the Power 11 E1180 (9080‑HEU); Power 10 E1080 (9080‑HEX); and Power 9 models S922 (9009‑22G), H922 (9223‑22S), S914 (9009‑41G), S924 (9009‑42G), H924 (9223‑42S), E950 (9040‑MR9), and E980 (9080‑M9S). The firmware versions impacted are FW1120.00, FW1110.00‑FW1110.30, FW1060.00‑FW1060.80, and FW950.00‑FW950.H2. Firmware updates are available through IBM Fix Central.

Risk and Exploitability

The CVSS score of 9.6 signifies a critical severity for Remote Code Execution. The EPSS score is not available, indicating no current exploitation probability measurement, and the vulnerability is not listed in the CISA KEV catalog. Attackers can exploit the flaw without authentication by sending a crafted request over the network to the FSP’s web interface, which is reachable from external networks or internal networks that lack proper segmentation.

Generated by OpenCVE AI on August 20, 2026 at 10:23 UTC.

Remediation

Vendor Solution

IBM strongly recommends customers with the products below install FW1120.01(1120_167), FW1110.31(1110_134) or newer to remediate this vulnerability as soon as possible. Power 11 1) IBM Power System E1180 (9080-HEU) IBM strongly recommends customers with the products below install FW1060.81(1060_184) or newer to remediate this vulnerability as soon as possible. Power 10 1) IBM Power System E1080 (9080-HEX) IBM strongly recommends customers with the products below install FW950.H3(950_230) or newer to remediate this vulnerability as soon as possible. Power 9 1) IBM Power System S922 (9009-22G) 2) IBM Power System H922 (9223-22S) 3) IBM Power System S914 (9009-41G) 4) IBM Power System S924 (9009-42G) 5) IBM Power System H924 (9223-42S) 6) IBM Power System E950 (9040-MR9) 7) IBM Power System E980 (9080-M9S) The images mentioned above can be located at IBM Fix Central : https://www.ibm.com/support/fixcentral/


Vendor Workaround

Protect access to the FSP's network interface.


OpenCVE Recommended Actions

  • Apply the latest firmware update for your Power system model: install FW1120.01(1120_167) or newer on Power 11, FW1060.81(1060_184) or newer on Power 10, or FW950.H3(950_230) or newer on Power 9 systems, following IBM’s update procedure via IBM Fix Central.
  • Restrict or block network access to the FSP’s network interface until the firmware is upgraded, as a temporary workaround.
  • If the ASMI web interface is not required for day‑to‑day operations, disable it to eliminate the attack surface until a patch is applied.

Generated by OpenCVE AI on August 20, 2026 at 10:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 25 Aug 2026 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Ibm power System H924 \(9223-42s\)
CPEs cpe:2.3:h:ibm:power_system_h924_\(\(9223-42s\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_h924_\(9223-42s\):-:*:*:*:*:*:*:*
Vendors & Products Ibm power System H924 \(\(9223-42s\)
Ibm power System H924 \(9223-42s\)

Mon, 24 Aug 2026 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E1180 \(9080-heu\)
Ibm power System E1180 \(9080-heu\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System H924 \(\(9223-42s\)
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware
CPEs cpe:2.3:h:ibm:power_system_e1080_\(9080-hex\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e1180_\(9080-heu\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e950_\(9040-mr9\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_e980_\(9080-m9s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h922_\(9223-22s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_h924_\(\(9223-42s\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s914_\(9009-41g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s922_\(9009-22g\):-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:power_system_s924_\(9009-42g\):-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e1080_\(9080-hex\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e1180_\(9080-heu\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e1180_\(9080-heu\)_firmware:fw1120.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e950_\(9040-mr9\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_e980_\(9080-m9s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h922_\(9223-22s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_h924_\(9223-42s\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s914_\(9009-41g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s922_\(9009-22g\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_system_s924_\(9009-42g\)_firmware:*:*:*:*:*:*:*:*
Vendors & Products Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware
Ibm power System E1180 \(9080-heu\)
Ibm power System E1180 \(9080-heu\) Firmware
Ibm power System E950 \(9040-mr9\)
Ibm power System E950 \(9040-mr9\) Firmware
Ibm power System E980 \(9080-m9s\)
Ibm power System E980 \(9080-m9s\) Firmware
Ibm power System H922 \(9223-22s\)
Ibm power System H922 \(9223-22s\) Firmware
Ibm power System H924 \(9223-42s\) Firmware
Ibm power System H924 \(\(9223-42s\)
Ibm power System S914 \(9009-41g\)
Ibm power System S914 \(9009-41g\) Firmware
Ibm power System S922 \(9009-22g\)
Ibm power System S922 \(9009-22g\) Firmware
Ibm power System S924 \(9009-42g\)
Ibm power System S924 \(9009-42g\) Firmware

Fri, 21 Aug 2026 03:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 19 Aug 2026 19:15:00 +0000

Type Values Removed Values Added
Description IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execution, giving the attacker full control over the managed system, resulting in a confidentiality, integrity, and availability impact.
Title Power System Buffer Overflow
First Time appeared Ibm
Ibm power Systems Firmware
Weaknesses CWE-121
CPEs cpe:2.3:o:ibm:power_systems_firmware:fw1060.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw1060.80:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw1110.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw1110.30:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw1120.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw950.00:*:*:*:*:*:*:*
cpe:2.3:o:ibm:power_systems_firmware:fw950.h2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm power Systems Firmware
References
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Ibm Power System E1080 \(9080-hex\) Power System E1080 \(9080-hex\) Firmware Power System E1180 \(9080-heu\) Power System E1180 \(9080-heu\) Firmware Power System E950 \(9040-mr9\) Power System E950 \(9040-mr9\) Firmware Power System E980 \(9080-m9s\) Power System E980 \(9080-m9s\) Firmware Power System H922 \(9223-22s\) Power System H922 \(9223-22s\) Firmware Power System H924 \(9223-42s\) Power System H924 \(9223-42s\) Firmware Power System S914 \(9009-41g\) Power System S914 \(9009-41g\) Firmware Power System S922 \(9009-22g\) Power System S922 \(9009-22g\) Firmware Power System S924 \(9009-42g\) Power System S924 \(9009-42g\) Firmware Power Systems Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-08-22T03:56:02.086Z

Reserved: 2026-07-23T00:09:08.103Z

Link: CVE-2026-16687

cve-icon Vulnrichment

Updated: 2026-08-20T15:25:55.328Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-19T19:17:10.280

Modified: 2026-08-25T14:31:59.517

Link: CVE-2026-16687

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-20T10:30:03Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow