Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4506 articles · 223855 vulns · 37/41 feeds (7d)
← Back to list
7.1
CVE-2026-93306PATCHED
ibm · server firmware

This Power System update is being released to address

Description

IBM Server Firmware FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker on the management network can send a malformed HTTPS request to ASMI, causing the web server to crash with possible memory corruption and generate an error log. The ASMI web interface will restart automatically; however, repeated exploitation could result in a sustained loss of access to the ASMI management interface, resulting in an integrity and availability impact.

Affected Products

VendorProductVersions
ibmserver firmwareFW1120.00, FW1110.00, FW1060.00, FW950.00

References

  • https://www.ibm.com/support/pages/node/7289331(vendor-advisory, patch)

Related News (1 articles)

Tier C
VulDB2d ago
CVE-2026-93306 | IBM Server Firmware up to FW950.H3/FW1060.81/FW1110.31/FW1120.01 ASMI Web Interface memory corruption
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.17.1 HIGH
VectorCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
https://www.ibm.com/support/pages/node/7289331
CWECWE-125
PublishedSep 25, 2026
Trending Score26
Source articles1
Independent1
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-8400
Multiple Vulnerabilities in IBM® Java SDK affect IBM WebSphere Application Server and WebSphere Application Server Liberty due to the July 2026 CPU
Trending: 34
CRITICALCVE-2026-17472
Multiple Vulnerabilities in IBM Concert Software
Trending: 27
CRITICALCVE-2026-6928
Multiple Vulnerabilities in IBM Concert Software
Trending: 27
CRITICALCVE-2026-6730
Multiple Vulnerabilities in IBM Concert Software
Trending: 27
CRITICALCVE-2026-6721
Multiple Vulnerabilities in IBM Concert Software
Trending: 27

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 25, 2026
Discovered by ZDM
Sep 25, 2026
Patch Available
Sep 26, 2026