CVE-2026-54423: [OSSA-2026-025] Ironic: RBAC Bypass in IPMI Raw Command Execution (CVE-2026-54423)
Published Jul 8, 2026
·Updated
In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy nodes using the IPMI management interface can maliciously use the sendraw step to send arbitrary IPMI commands to a node, bypassing Ironic's access control.
Affected Software
1 affected component
Openstack Ironic<37.0.1
Event History
Jul 10, 2026
CVE Published
via MITRE·03:10 AM
Data Sourced
via MITRE·03:10 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-54423?
The severity of CVE-2026-54423 is rated as high, with a score of 8.2.
2
How do I fix CVE-2026-54423?
To fix CVE-2026-54423, upgrade OpenStack Ironic to version 37.0.1 or later.
3
What does CVE-2026-54423 affect?
CVE-2026-54423 affects OpenStack Ironic prior to version 37.0.1.
4
What is the risk associated with CVE-2026-54423?
The risk associated with CVE-2026-54423 is rated at 61, indicating a significant potential impact on security.
5
What can attackers do with CVE-2026-54423?
Attackers can exploit CVE-2026-54423 to bypass access control and send arbitrary IPMI commands to nodes.