Supermicro
Supermicro BMC: vulnerabilidades y CVE
Supermicro BMC tiene 4 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-3820 | Alta (7.2) | 0.66% | — | 4 jun 2026 | There is a vulnerability in the Supermicro BMC SMTP service at Supermicro AS-2115HS-TNR. An attacker may obtain administrator privileges and inject specially crafted characters into the SMTP service configuration. This… |
| CVE-2025-8404 | Media (5.5) | 0.32% | — | 18 nov 2025 | Stack buffer overflow vulnerability exists in the Supermicro BMC Shared library. An authenticated attacker with access to the BMC exploit stack buffer via a crafted header and achieve arbitrary code execution of the… |
| CVE-2025-7704 | Media (5.4) | 0.23% | — | 13 nov 2025 | Supermicro BMC Insyde SMASH shell program has a stacked-based overflow vulnerability |
| CVE-2013-4782 | Alta (10) | 26% | — | 8 jul 2013 | The Supermicro BMC implementation allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password. |