Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-10238

Опубликовано: 04 фев. 2025
Источник: nvd
CVSS3: 7.2
EPSS Низкий

Описание

A security issue in the firmware image verification implementation

at Supermicro MBD-X12DPG-OA6. An attacker can upload a specially crafted image that will cause a stack overflow is caused by not checking fld->used_bytes.

EPSS

Процентиль: 44%
0.00216
Низкий

7.2 High

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 7.2
github
около 1 года назад

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6. An attacker can upload a specially crafted image that will cause a stack overflow is caused by not checking fld->used_bytes.

EPSS

Процентиль: 44%
0.00216
Низкий

7.2 High

CVSS3

Дефекты

CWE-121