Supermicro
Supermicro X11sse-f Firmware: vulnerabilidades y CVE
Supermicro X11sse-f Firmware tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-40290 | Alta (8.3) | 0.70% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue that affects Internet Explorer 11 on Windows. |
| CVE-2023-40289 | Alta (7.2) | 18% | — | 27 mar 2024 | A command injection issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker can exploit this to elevate privileges from a user with BMC administrative privileges. |
| CVE-2023-40288 | Alta (8.3) | 0.60% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue. |
| CVE-2023-40287 | Alta (8.3) | 0.60% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue. |
| CVE-2023-40286 | Alta (8.3) | 0.60% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue. |
| CVE-2023-40285 | Media (6.5) | 0.63% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue. |
| CVE-2023-40284 | Alta (8.3) | 0.79% | — | 27 mar 2024 | An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue. |
| CVE-2023-33413 | Alta (8.8) | 0.96% | — | 7 dic 2023 | The configuration functionality in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions through… |
| CVE-2023-33412 | Alta (8.8) | 1.2% | — | 7 dic 2023 | The web interface in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions before 3.17.02, allows… |
| CVE-2023-33411 | Alta (7.5) | 1.3% | — | 7 dic 2023 | A web server in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions up to 3.17.02, allows remote… |
| CVE-2023-34853 | Alta (7.8) | 0.39% | — | 22 ago 2023 | Buffer Overflow vulnerability in Supermicro motherboard X12DPG-QR 1.4b allows local attackers to hijack control flow via manipulation of SmcSecurityEraseSetupVar variable. |
| CVE-2022-43309 | Media (5.5) | 0.15% | — | 7 abr 2023 | Supermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions. |
| CVE-2019-16650 | Crítica (10) | 2.2% | — | 21 sept 2019 | On Supermicro X10 and X11 products, a client's access privileges may be transferred to a different client that later has the same socket file descriptor number. In opportunistic circumstances, an attacker can simply… |
| CVE-2019-16649 | Crítica (10) | 0.93% | — | 21 sept 2019 | On Supermicro H11, H12, M11, X9, X10, and X11 products, a combination of encryption and authentication problems in the virtual media service allows capture of BMC credentials and data transferred over virtual media… |