CVE-2024-35124: IBM Openbmc
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
A vulnerability in the combination of the OpenBMC's FW1050.00 through FW1050.10, FW1030.00 through FW1030.50, and FW1020.00 through FW1020.60 default password and session management allow an attacker to gain administrative access to the BMC. IBM X-Force ID: 290674.
Affected products
- IBM Openbmc: from fw1020.00, up to and including fw1020.60; from fw1030.00, up to and including fw1030.50; from fw1050.00, up to and including fw1050.10
Published 2024-08-13. Last modified 2026-06-17.