Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v8px-cfvm-hpmm

Опубликовано: 11 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered on Supermicro BMC firmware in select X11, X12, H12, B12, X13, H13, and B13 motherboards (and CMM6 modules). An unauthenticated user can post crafted data to the interface that triggers a stack buffer overflow, and may lead to arbitrary remote code execution on a BMC.

An issue was discovered on Supermicro BMC firmware in select X11, X12, H12, B12, X13, H13, and B13 motherboards (and CMM6 modules). An unauthenticated user can post crafted data to the interface that triggers a stack buffer overflow, and may lead to arbitrary remote code execution on a BMC.

EPSS

Процентиль: 94%
0.1287
Средний

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

An issue was discovered on Supermicro BMC firmware in select X11, X12, H12, B12, X13, H13, and B13 motherboards (and CMM6 modules). An unauthenticated user can post crafted data to the interface that triggers a stack buffer overflow, and may lead to arbitrary remote code execution on a BMC.

CVSS3: 9.8
fstec
больше 1 года назад

Уязвимость функции GetValue веб-интерфейса BMC IPMI серверов Supermicro, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 94%
0.1287
Средний

9.8 Critical

CVSS3

Дефекты

CWE-121