← Back to CVE List
Vulnerability Intelligence Report

CVE-2013-3623

Multiple stack-based buffer overflows in cgi/close_window.cgi in the web interface in the Intelligent Platform Management Interface (IPMI) with firmware before 3.15 (SMT_X9_315) on Supermicro X9 generation motherboards allow remote attackers to execute arbitrary code via the (1) sess_sid or (2) ACT parameter.

No Active Exploit Signals
CVSS Base Score
10.0
HIGH
EPSS Probability:71.93%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
supermicro intelligent_platform_management_firmware 2.24

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
71.929%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityCERT/CC · CERT · USA
Reserved2013-05-21T00:00:00
Published2013-12-10T16:00:00
Patch Date2013-11-06
Last Updated2024-08-06T16:14:56

LINK COPIED TO CLIPBOARD