SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-4937

MEDIUM · CVSS 5.3 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

IBM PowerVM Hypervisor versions FW1110.00 to FW1110.20, FW1060.00 to FW1060.71, and FW950.00 to FW950.H2 are vulnerable to a local attack that could allow an administrator to decrypt sensitive data due to insufficient entropy in certain hypervisor calls. This vulnerability poses a risk of data exposure and should be prioritized by organizations using these hypervisor versions, particularly those handling sensitive or regulated information.

CVE
CVE-2026-4937
Severity
MEDIUM
CVSS
5.3
EPSS
0.10%

Original NVD Description

IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 could allow a local attacker with administrative privileges to decrypt encrypted data due to certain hypervisor calls utilizing less entropy than requested.

Related CVEs

Other vulnerabilities affecting the same vendor(s)