Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-10239

Опубликовано: 04 фев. 2025
Источник: nvd
CVSS3: 7.2
EPSS Низкий

Описание

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

EPSS

Процентиль: 46%
0.00235
Низкий

7.2 High

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 7.2
github
около 1 года назад

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

EPSS

Процентиль: 46%
0.00235
Низкий

7.2 High

CVSS3

Дефекты

CWE-121