All CVEs
Vulnerability intelligence

CVE-2026-16687

IBM Power Systems Firmware CWE-121

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execution, giving the attacker full control over the managed system, resulting in a confidentiality, integrity, and availability impact.

CVSS Score
9.6
Critical
EPSS — Exploit Probability
0.3%
Riskier than 26% of all CVEs · checked 2026-10-08
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
Patch available
Vendor fix published
NVD entry Vendor patch PoC / advisory

1 article across 1 outlet · first covered Aug 24, 2026 · latest Aug 24, 2026

Coverage timeline

Related CVEs — IBM