SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-18857

LOW · CVSS 3.4 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-24 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

The BMC firmware management interface in specific versions of IBM OPENBMC is vulnerable, allowing a host system to potentially crash the firmware management service or read a limited amount of internal memory. This could lead to confidentiality and availability issues for the managed system. Organizations using affected versions of IBM OPENBMC should prioritize this vulnerability to mitigate potential risks to their systems.

CVE
CVE-2026-18857
Severity
LOW
CVSS
3.4
EPSS
0.11%

Original NVD Description

IBM OPENBMC FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, and FW1060.00 through FW1060.81 is affected by a vulnerability in the BMC firmware management interface. The host system can cause the BMC firmware management service to crash or allow a limited amount of BMC internal memory to be read, resulting in a confidentiality and availability impact to the managed system.

Related CVEs

Other vulnerabilities affecting the same vendor(s)