SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-12943

CRITICAL · CVSS 9.8 EPSS 1.01%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

IBM HMC versions 10.3.1050.0 to 10.3.1064.0 and 11.1.1110.0 to 11.1.1112.0 are vulnerable to a critical flaw that permits unauthenticated users to execute arbitrary commands with elevated privileges, stemming from inadequate input validation. This vulnerability poses a significant risk to the integrity and security of IBM Power environments. Organizations utilizing these management systems should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-12943
Severity
CRITICAL
CVSS
9.8
EPSS
1.01%

Original NVD Description

IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power environments (HMC and Novalink) could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input.

Related CVEs

Other vulnerabilities affecting the same vendor(s)