8.2

CVE-2026-54423

In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy nodes using the IPMI management interface can maliciously use the send_raw step to send arbitrary IPMI commands to a node, bypassing Ironic's access control.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerOpenStack
Produkt Ironic
Default Statusunaffected
Version 22.1.0
Version < 29.0.6
Status affected
Version 30.0.0
Version < 32.0.2
Status affected
Version 32.0.0
Version < 35.0.2
Status affected
Version 36.0.0
Version < 37.0.1
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.224
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
MITRE 8.2 2.3 5.3
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:H
CWE-424 Improper Protection of Alternate Path

The product does not sufficiently protect all possible paths that a user can take to access restricted functionality or resources.

https://bugs.launchpad.net/ironic/+bug/2150458
https://security.openstack.org/ossa/OSSA-2026-025.html
http://www.openwall.com/lists/oss-security/2026/07/08/3