CVE-2025-46247
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Apr 22, 2025
Updated: Apr 29, 2025
CWE ID 862
Summary
CVE-2025-1951 is a vulnerability affecting the IBM Hardware Management Console on Power Systems versions V10.2.1030.0 and V10.3.1050.0. This issue grants local users the ability to execute commands with elevated privileges, due to the console's unjustified granting of excessive permissions. The implications of this vulnerability include potential system compromise and data exposure, making it essential for organizations using these Power Systems versions to apply the necessary patches as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Codepeople