Beveiligingsadvies

CVE-2026-54423

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-10 03:10:54
Laatst bijgewerkt 2026-07-10 15:25:59
Toegewezen door mitre
CVSS-score 8.2
Status PUBLISHED

Beschrijving

In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy nodes using the IPMI management interface can maliciously use the send_raw step to send arbitrary IPMI commands to a node, bypassing Ironic's access control.