Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4wqc-fqvf-wh8w

Опубликовано: 04 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

EPSS

Процентиль: 46%
0.00235
Низкий

7.2 High

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 7.2
nvd
около 1 года назад

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

EPSS

Процентиль: 46%
0.00235
Низкий

7.2 High

CVSS3

Дефекты

CWE-121