SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-18681

MEDIUM · CVSS 6.8 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The vulnerability affects IBM Server Firmware versions FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2, specifically in the FSP firmware update process. An attacker with authenticated administrator-level access can exploit this flaw to execute arbitrary code, potentially compromising the confidentiality, integrity, and availability of the system. Organizations using the affected firmware should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-18681
Severity
MEDIUM
CVSS
6.8
EPSS
0.20%

Original NVD Description

IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP firmware update process. An attacker with authenticated administrator-level access to the FSP can, under specific conditions, execute arbitrary code, resulting in a confidentiality, integrity, and availability impact.

Related CVEs

Other vulnerabilities affecting the same vendor(s)