In OpenBMC 2.9, crafted IPMI messages allow an attacker to bypass authentication and gain full control of the system.
- https://github.com/google/security-research/security/advisories/GHSA-gg9x-v835-m48q
No PoCs found on GitHub currently.