CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Supermicro 2X10drh It Bios X10drh It FirmwareNov 21, 2024 Jun 24, 2020 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to exploit a cgi/config_user.cgi CSRF issue to add new admin users. The fixed versions are BIOS 3.2 an...Show more |
1Supermicro 254A1sa2 2750f Firmware A1sai 2550f FirmwareA1sai 2750f Firmware+251 moreNov 21, 2024 Sep 21, 2019 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 On Supermicro X10 and X11 products, a client's access privileges may be transferred to a different client that later has the same socket file descriptor number. In opportunistic circumstances, an attacker can simply conn...Show more |
1Supermicro 321A1sa2 2750f Firmware A1sai 2550f FirmwareA1sai 2750f Firmware+318 moreNov 21, 2024 Sep 21, 2019 N/A· v4 10.0 CRITICAL· v3 5.0 MEDIUM· v2 On Supermicro H11, H12, M11, X9, X10, and X11 products, a combination of encryption and authentication problems in the virtual media service allows capture of BMC credentials and data transferred over virtual media devic...Show more |