Hardware management console
This hub aggregates every CVE we track for Hardware management console, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
17
CVEs tracked
4
Critical
6
High
0
In CISA KEV
Severity distribution
MEDIUM7HIGH6CRITICAL4
Monthly trend
0
0
0
0
0
0
0
2
1
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Hardware management console.
- CVE-2025-36125IBM Hardware Management Console - Power Systems cross-site scripting6.4
- CVE-2024-45094IBM DS8900F and DS8A00 Hardware Management Console (HMC) cross-site scripting5.5
- CVE-2025-1951IBM Hardware Management Console - Power Systems command execution8.4
- CVE-2025-1950IBM Hardware Management Console - Power Systems command execution9.3
- CVE-2023-38280IBM Power HMC privilege escalation8.4
- CVE-2021-38930IBM System Storage DS8000 Management Console (HMC) R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 could allow a remote attacker to obtain sensitive information through unpublished URLs. IBM X-F...7.5
- CVE-2021-38929IBM System Storage DS8000 Management Console (HMC) R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 could allow a remote attacker to obtain sensitive information through unpublished URLs. IBM X-F...7.5
- CVE-2021-29707IBM HMC (Hardware Management Console) V9.1.910.0 and V9.2.950.0 could allow a local user to escalate their privileges to root access on a restricted shell. IBM X-Force ID: 200879.7.8
- CVE-2016-0230IBM Power Hardware Management Console (HMC) 7.3 through 7.3.0 SP7, 7.9 through 7.9.0 SP3, 8.1 through 8.1.0 SP3, 8.2 through 8.2.0 SP2, 8.3 through 8.3.0 SP2, 8.4 through 8.4.0 SP1, and 8.5.0 allow...6.8
- CVE-2009-1806Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.4.0 SP2, when Active Memory Sharing is used, has unknown impact and attack vectors, related to a shared memory partiti...9.3
- CVE-2009-0178Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 has unknown impact and attack vectors.10.0
- CVE-2008-5035The Resource Monitoring and Control (RMC) daemon in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 and 3.3.0 SP2 allows remote attackers to cause a denial of service (daemon crash or han...5.0
- CVE-2008-0495Unspecified vulnerability in the Pegasus CIM Server in IBM Hardware Management Console (HMC) 7 R3.2.0 allows remote attackers to cause a denial of service via unspecified vectors.7.8
- CVE-2007-6305Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 7 R3.2.0 allow attackers to gain privileges via "some HMC commands."4.6
- CVE-2007-6293Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 6 R1.3 allow attackers to gain privileges via "some HMC commands."10.0
Product normalization is registry-driven with AI assist and human review. How it works