10
CVE-2019-16649
- EPSS 0.1%
- Published 21.09.2019 02:15:11
- Last modified 21.11.2024 04:30:52
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
On Supermicro H11, H12, M11, X9, X10, and X11 products, a combination of encryption and authentication problems in the virtual media service allows capture of BMC credentials and data transferred over virtual media devices. Attackers can use captured credentials to connect virtual USB devices to the server managed by the BMC.
Data is provided by the National Vulnerability Database (NVD)
Supermicro ≫ X11dai-n Firmware Version1.71.5
Supermicro ≫ X11dac Firmware Version1.71.5
Supermicro ≫ X11dph-tq Firmware Version1.71.5
Supermicro ≫ X11dph-i Firmware Version1.71.5
Supermicro ≫ X11dph-t Firmware Version1.71.5
Supermicro ≫ X11dps-re Firmware Version1.71.5
Supermicro ≫ X11dsf-e Firmware Version1.71.5
Supermicro ≫ X11dsn-ts Firmware Version1.71.5
Supermicro ≫ X11dsn-tsq Firmware Version1.71.5
Supermicro ≫ X11dsc+ Firmware Version1.74
Supermicro ≫ X11ddw-nt Firmware Version1.71.5
Supermicro ≫ X11ddw-l Firmware Version1.71.5
Supermicro ≫ X11dgq Firmware Version1.71.5
Supermicro ≫ X11dpff-sn Firmware Version1.71.5
Supermicro ≫ X11dpfr-sn Firmware Version1.71.5
Supermicro ≫ X11dpfr-s Firmware Version1.71.5
Supermicro ≫ X11dpt-ps Firmware Version1.71.5
Supermicro ≫ X11dpt-b Firmware Version1.71.5
Supermicro ≫ X11dpt-bh Firmware Version1.71.5
Supermicro ≫ X11dpt-l Firmware Version3.74
Supermicro ≫ X11dpu Firmware Version1.71.5
Supermicro ≫ X11dpu-v Firmware Version1.71.5
Supermicro ≫ X11dpu-x Firmware Version1.71.5
Supermicro ≫ X11dpu-xll Firmware Version1.71.5
Supermicro ≫ X11dpu-z+ Firmware Version1.71.5
Supermicro ≫ X11dpu-ze+ Firmware Version1.71.5
Supermicro ≫ X11dpg-sn Firmware Version1.71.5
Supermicro ≫ X11dpg-qt Firmware Version1.71.5
Supermicro ≫ X11dpg-ot-cpu Firmware Version1.71.5
Supermicro ≫ X11dpi-nt Firmware Version1.71.5
Supermicro ≫ X11dpi-n Firmware Version1.71.5
Supermicro ≫ X11dpl-i Firmware Version1.71.5
Supermicro ≫ X11dpx-t Firmware Version1.71.5
Supermicro ≫ X11dgo-t Firmware Version1.71.5
Supermicro ≫ X11sca Firmware Version1.71.5
Supermicro ≫ X11sca-f Firmware Version1.71.5
Supermicro ≫ X11sch-f Firmware Version1.23.2
Supermicro ≫ X11sch-ln4f Firmware Version1.23.2
Supermicro ≫ X11sca-w Firmware Version1.71.5
Supermicro ≫ X11scl-f Firmware Version1.23.2
Supermicro ≫ X11scl-ln4f Firmware Version1.23.2
Supermicro ≫ X11scl-if Firmware Version1.23.2
Supermicro ≫ X11scm-f Firmware Version1.23.2
Supermicro ≫ X11scm-ln8f Firmware Version1.23.2
Supermicro ≫ X11scw-f Firmware Version3.75.00
Supermicro ≫ X11spa-t Firmware Version1.71.5
Supermicro ≫ X11spa-tf Firmware Version1.71.5
Supermicro ≫ X11spi-tf Firmware Version1.71.6
Supermicro ≫ X11spl-f Firmware Version1.71.6
Supermicro ≫ X11spm-f Firmware Version1.71.6
Supermicro ≫ X11spm-tf Firmware Version1.71.6
Supermicro ≫ X11spm-tpf Firmware Version1.71.6
Supermicro ≫ X11sph-nctf Firmware Version1.71.6
Supermicro ≫ X11sph-nctpf Firmware Version1.71.6
Supermicro ≫ X11spw-tf Firmware Version1.71.6
Supermicro ≫ X11spw-ctf Firmware Version1.71.6
Supermicro ≫ X11spg-tf Firmware Version1.71.6
Supermicro ≫ X11sri-if Firmware Version3.75.00
Supermicro ≫ X11srl-f Firmware Version3.74.2
Supermicro ≫ X11srm-f Firmware Version1.31.1
Supermicro ≫ X11srm-vf Firmware Version1.31.1
Supermicro ≫ X11ssl-f Firmware Version1.56
Supermicro ≫ X11ssm-f Firmware Version1.56
Supermicro ≫ X11ssl Firmware Version1.56
Supermicro ≫ X11ssm Firmware Version1.56
Supermicro ≫ X11ssh-f Firmware Version1.56
Supermicro ≫ X11ssh-ln4f Firmware Version1.56
Supermicro ≫ X11ssw-4tf Firmware Version1.56
Supermicro ≫ X11ssw-tf Firmware Version1.56
Supermicro ≫ X11ssw-f Firmware Version1.71.5
Supermicro ≫ X11ssi-ln4f Firmware Version1.71.5
Supermicro ≫ X11ssw-f Firmware Version3.85.00
Supermicro ≫ X11ssh-tf Firmware Version1.56
Supermicro ≫ X11ssh-ctf Firmware Version1.56
Supermicro ≫ X11ssl-cf Firmware Version1.56
Supermicro ≫ X11ssl-nf Firmware Version1.56
Supermicro ≫ X11ssh-gf-1585 Firmware Version1.56
Supermicro ≫ X11ssh-gf-1585l Firmware Version1.56
Supermicro ≫ X11ssh-gtf-1585 Firmware Version1.56
Supermicro ≫ X11ssh-gtf-1585l Firmware Version1.56
Supermicro ≫ B11dpt Firmware Version3.68
Supermicro ≫ B11dpe Firmware Version3.68
Supermicro ≫ B11spe-cpu-tf Firmware Version3.68
Supermicro ≫ B11spe-cpu-25g Firmware Version3.68
Supermicro ≫ B11qpi Firmware Version3.68
Supermicro ≫ X11ssd-f Firmware Version3.68
Supermicro ≫ X11sse-f Firmware Version3.68
Supermicro ≫ B2ss1-cpu Firmware Version3.68
Supermicro ≫ B2ss1-cf Firmware Version3.68
Supermicro ≫ B2ss1-f Firmware Version3.68
Supermicro ≫ B2ss2-f Firmware Version3.68
Supermicro ≫ B2ss1-mtf Firmware Version3.68
Supermicro ≫ B2ss1-h-mtf Firmware Version3.68
Supermicro ≫ B2ss2-mtf Firmware Version3.68
Supermicro ≫ B2ss2-h-mtf Firmware Version3.68
Supermicro ≫ X11scd-f Firmware Version3.68
Supermicro ≫ X11sdd-8c-f Firmware Version3.68
Supermicro ≫ X11sdd-18c-f Firmware Version3.68
Supermicro ≫ X11qph+ Firmware Version1.71.5
Supermicro ≫ X11opi-cpu Firmware Version1.71.5
Supermicro ≫ X11sds-8c Firmware Version3.74.2
Supermicro ≫ X11sds-12c Firmware Version3.74.2
Supermicro ≫ X11sds-16c Firmware Version3.74.2
Supermicro ≫ X10ddw-i Firmware Version3.83
Supermicro ≫ X10ddw-in Firmware Version3.83
Supermicro ≫ X10drs Firmware Version3.83
Supermicro ≫ X10drd-i Firmware Version3.83
Supermicro ≫ X10drd-it Firmware Version3.83
Supermicro ≫ X10drd-int Firmware Version3.83
Supermicro ≫ X10drd-intp Firmware Version3.83
Supermicro ≫ X10drd-itp Firmware Version3.83
Supermicro ≫ X10drd-l Firmware Version3.83
Supermicro ≫ X10drd-lt Firmware Version3.83
Supermicro ≫ X10drd-ltp Firmware Version3.83
Supermicro ≫ X10drx Firmware Version3.83
Supermicro ≫ X10drh-c Firmware Version3.83
Supermicro ≫ X10drh-ct Firmware Version3.83
Supermicro ≫ X10drh-cln4 Firmware Version3.83
Supermicro ≫ X10drh-i Firmware Version3.83
Supermicro ≫ X10drh-it Firmware Version3.83
Supermicro ≫ X10drh-iln4 Firmware Version3.83
Supermicro ≫ X10dri Firmware Version3.83
Supermicro ≫ X10dri-t Firmware Version3.83
Supermicro ≫ X10drc-ln4+ Firmware Version3.83
Supermicro ≫ X10drc-t4+ Firmware Version3.83
Supermicro ≫ X10dri-ln4+ Firmware Version3.83
Supermicro ≫ X10dri-t4+ Firmware Version3.83
Supermicro ≫ X10drl-ln4 Firmware Version3.83
Supermicro ≫ X10drl-i Firmware Version3.83
Supermicro ≫ X10drl-it Firmware Version3.83
Supermicro ≫ X10drl-c Firmware Version3.83
Supermicro ≫ X10drl-ct Firmware Version3.83
Supermicro ≫ X10drt-l Firmware Version3.83
Supermicro ≫ X10drt-libq Firmware Version3.83
Supermicro ≫ X10drt-libf Firmware Version3.83
Supermicro ≫ X10drt-b+ Firmware Version3.83
Supermicro ≫ X10drt-h Firmware Version3.83
Supermicro ≫ X10drt-hibf Firmware Version3.83
Supermicro ≫ X10drt-ps Firmware Version3.83
Supermicro ≫ X10drt-p Firmware Version3.83
Supermicro ≫ X10drt-pt Firmware Version3.83
Supermicro ≫ X10drt-pibq Firmware Version3.83
Supermicro ≫ X10drt-pibf Firmware Version3.83
Supermicro ≫ X10drfr-n Firmware Version3.83
Supermicro ≫ X10drfr-nt Firmware Version3.83
Supermicro ≫ X10drfr Firmware Version3.83
Supermicro ≫ X10drfr-t Firmware Version3.83
Supermicro ≫ X10drff-cg Firmware Version3.83
Supermicro ≫ X10drff-ctg Firmware Version3.83
Supermicro ≫ X10drff-ig Firmware Version3.83
Supermicro ≫ X10drff-itg Firmware Version3.83
Supermicro ≫ X10drff Firmware Version3.83
Supermicro ≫ X10drff-c Firmware Version3.83
Supermicro ≫ X10drw-n Firmware Version3.83
Supermicro ≫ X10drw-nt Firmware Version3.83
Supermicro ≫ X10drw-e Firmware Version3.83
Supermicro ≫ X10drw-et Firmware Version3.83
Supermicro ≫ X10drw-i Firmware Version3.83
Supermicro ≫ X10drw-it Firmware Version3.83
Supermicro ≫ X10dsn-ts Firmware Version3.83
Supermicro ≫ X10drg-ot+-cpu Firmware Version3.83
Supermicro ≫ X10drg-o+-cpu Firmware Version3.83
Supermicro ≫ X10dgo-t Firmware Version3.83
Supermicro ≫ X10dgq Firmware Version3.83
Supermicro ≫ X10drg-q Firmware Version3.83
Supermicro ≫ X10drg-h Firmware Version3.83
Supermicro ≫ X10drg-ht Firmware Version3.83
Supermicro ≫ X10dru-i+ Firmware Version3.83
Supermicro ≫ X10dru-x Firmware Version3.83
Supermicro ≫ X10dru-xll Firmware Version3.83
Supermicro ≫ X10dsc+ Firmware Version3.83
Supermicro ≫ X10sra-f Firmware Version3.83
Supermicro ≫ X10sra Firmware Version3.83
Supermicro ≫ X10srd-f Firmware Version3.83
Supermicro ≫ X10srm-f Firmware Version3.83
Supermicro ≫ X10srm-tf Firmware Version3.83
Supermicro ≫ X10srl-f Firmware Version3.83
Supermicro ≫ X10sri-f Firmware Version3.83
Supermicro ≫ X10srh-cf Firmware Version3.83
Supermicro ≫ X10srh-cln4f Firmware Version3.83
Supermicro ≫ X10srg-f Firmware Version3.83
Supermicro ≫ X10srl-f Firmware Version3.83
Supermicro ≫ X10srw-f Firmware Version3.83
Supermicro ≫ X10sae Firmware Version3.83
Supermicro ≫ X10sat Firmware Version3.83
Supermicro ≫ X10slx-f Firmware Version3.83
Supermicro ≫ X10sld-f Firmware Version3.83
Supermicro ≫ X10sld-hf Firmware Version3.83
Supermicro ≫ X10sle-f Firmware Version3.83
Supermicro ≫ X10sle-hf Firmware Version3.83
Supermicro ≫ X10sle-df Firmware Version3.83
Supermicro ≫ X10sl7-f Firmware Version3.83
Supermicro ≫ X10sla-f Firmware Version3.83
Supermicro ≫ X10slh-f Firmware Version3.83
Supermicro ≫ X10sll+-f Firmware Version3.83
Supermicro ≫ X10sll-f Firmware Version3.83
Supermicro ≫ X10sll-sf Firmware Version3.83
Supermicro ≫ X10sll-s Firmware Version3.83
Supermicro ≫ X10slm-f Firmware Version3.83
Supermicro ≫ X10slm+-f Firmware Version3.83
Supermicro ≫ X10slm+-ln4f Firmware Version3.83
Supermicro ≫ X10sde-df Firmware Version3.68
Supermicro ≫ X10sdd-16c-f Firmware Version3.68
Supermicro ≫ X10sdd-f Firmware Version3.68
Supermicro ≫ B1sd1-16c-tf Firmware Version3.68
Supermicro ≫ B1sd1-tf Firmware Version3.68
Supermicro ≫ B1sd2-16c-tf Firmware Version3.68
Supermicro ≫ B1sd2-tf Firmware Version3.68
Supermicro ≫ B10drc Firmware Version3.68
Supermicro ≫ B10drc-n Firmware Version3.68
Supermicro ≫ B10dri Firmware Version3.68
Supermicro ≫ B10dri-n Firmware Version3.68
Supermicro ≫ B10drg-ibf Firmware Version3.68
Supermicro ≫ B10drg-ibf2 Firmware Version3.68
Supermicro ≫ B10drg-tp Firmware Version3.68
Supermicro ≫ B10drt Firmware Version3.68
Supermicro ≫ B10drt-ibf Firmware Version3.68
Supermicro ≫ B10drt-ibf2 Firmware Version3.68
Supermicro ≫ B10drt-tp Firmware Version3.68
Supermicro ≫ X10qrh+ Firmware Version3.80
Supermicro ≫ X10qbl-4 Firmware Version3.80
Supermicro ≫ X10qbl-4ct Firmware Version3.80
Supermicro ≫ X10qbl Firmware Version3.80
Supermicro ≫ X10qbl-ct Firmware Version3.80
Supermicro ≫ X10qbi Firmware Version3.81
Supermicro ≫ X10obi-cpu Firmware Version3.83
Supermicro ≫ X10dbt-t Firmware Version3.83
Supermicro ≫ X10sdv-7tp8f Firmware Version3.83
Supermicro ≫ X10sdv-7tp4f Firmware Version3.83
Supermicro ≫ X10sdv-2c-7tp4f Firmware Version3.83
Supermicro ≫ X10sdv-4c-7tp4f Firmware Version3.83
Supermicro ≫ X10sdv-2c-tp4f Firmware Version3.83
Supermicro ≫ X10sdv-4c+-tp4f Firmware Version3.83
Supermicro ≫ X10sdv-2c-tp8f Firmware Version3.83
Supermicro ≫ X10sdv-tp8f Firmware Version3.83
Supermicro ≫ X10sdv-f Firmware Version3.83
Supermicro ≫ X10sdv-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-8c-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-6c-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-2c-tln2f Firmware Version3.83
Supermicro ≫ X10sdv-4c-tln2f Firmware Version3.83
Supermicro ≫ X10sdv-4c-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-4c+-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-6c+-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-8c-tln4f+ Firmware Version3.83
Supermicro ≫ X10sdv-8c+-ln2f Firmware Version3.83
Supermicro ≫ X10sdv-12c-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-12c-tln4f+ Firmware Version3.83
Supermicro ≫ X10sdv-12c+-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-16c+-tln4f Firmware Version3.83
Supermicro ≫ X10sdv-16c-tln4f+ Firmware Version3.83
Supermicro ≫ X10sdv-16c-tln4f Firmware Version3.83
Supermicro ≫ A1srm-ln7f-2358 Firmware Version3.83
Supermicro ≫ A1srm-ln7f-2758 Firmware Version3.83
Supermicro ≫ A1srm-ln5f-2358 Firmware Version3.83
Supermicro ≫ A1sa2-2750f Firmware Version3.83
Supermicro ≫ A1sam-2750f Firmware Version3.83
Supermicro ≫ A1sam-2550f Firmware Version3.83
Supermicro ≫ A1srm-2758f Firmware Version3.83
Supermicro ≫ A1srm-2558f Firmware Version3.83
Supermicro ≫ A1sai-2750f Firmware Version3.83
Supermicro ≫ A1sai-2550f Firmware Version3.83
Supermicro ≫ A1sri-2758f Firmware Version3.83
Supermicro ≫ A1sri-2558f Firmware Version3.83
Supermicro ≫ A1sri-2358f Firmware Version3.83
Supermicro ≫ M11sdv-8c+-ln4f Firmware Version3.15
Supermicro ≫ M11sdv-8c-ln4f Firmware Version3.15
Supermicro ≫ M11sdv-8ct-ln4f Firmware Version3.15
Supermicro ≫ M11sdv-4c-ln4f Firmware Version3.15
Supermicro ≫ M11sdv-4ct-ln4f Firmware Version3.15
Supermicro ≫ X9drg-h(t)f Firmware Version3.3
Supermicro ≫ X9drh-7/i(t)f Firmware Version3.3
Supermicro ≫ X9dr3/i-f Firmware Version3.3
Supermicro ≫ X9drt-h Series Firmware Version3.3
Supermicro ≫ X9drt Series Firmware Version3.3
Supermicro ≫ X9dr3/i-ln4f+ Firmware Version3.3
Supermicro ≫ X9drd-7ln4f Series Firmware Version3.3
Supermicro ≫ X9drd-ef Firmware Version3.3
Supermicro ≫ X9drl-3/if Firmware Version3.3
Supermicro ≫ X9drw-3ln4f+/3tf+ Firmware Version3.3
Supermicro ≫ X9drw-3/if Firmware Version3.3
Supermicro ≫ X9drw-7/itpf+ Firmware Version3.3
Supermicro ≫ X9dbl-3/i(f) Firmware Version3.3
Supermicro ≫ X9da7/e Firmware Version3.3
Supermicro ≫ X9dai Firmware Version3.3
Supermicro ≫ X9db3/i-(tp)f Firmware Version3.3
Supermicro ≫ X9dbs-f(-2u) Firmware Version3.3
Supermicro ≫ X9dbu-3/if Firmware Version3.3
Supermicro ≫ X9dr7/e-ln4f Firmware Version3.3
Supermicro ≫ X9dr7/e-tf+ Firmware Version3.3
Supermicro ≫ X9dr7-jln4f Firmware Version3.3
Supermicro ≫ X9drd-l/if Firmware Version3.3
Supermicro ≫ X9drd-it+ Firmware Version3.3
Supermicro ≫ X9drd-c(n)t+ Firmware Version3.3
Supermicro ≫ X9drfr Firmware Version3.3
Supermicro ≫ X9drff(-7) Firmware Version3.3
Supermicro ≫ X9drff-7/i(t)+ Firmware Version3.3
Supermicro ≫ X9drff-7/i(t)g+ Firmware Version3.3
Supermicro ≫ X9drg-h(t)f+ Firmware Version3.3
Supermicro ≫ X9drg-h(t)f+ii Firmware Version3.3
Supermicro ≫ X9drg-qf Firmware Version3.3
Supermicro ≫ X9drg-o(t)f-cpu Firmware Version3.3
Supermicro ≫ X9drl-7/ef Firmware Version3.3
Supermicro ≫ X9drt-p Series Firmware Version3.3
Supermicro ≫ X9drt-hf+ Firmware Version3.3
Supermicro ≫ X9drw-c(t)f31 Firmware Version3.3
Supermicro ≫ X9drw-7/itpf Firmware Version3.3
Supermicro ≫ X9drh-if-nv Firmware Version3.3
Supermicro ≫ X9drx+-f Firmware Version3.3
Supermicro ≫ X9dax-7/i(t)f Firmware Version3.3
Supermicro ≫ X9dax-7/if-hft Firmware Version3.3
Supermicro ≫ X9dal-3/i Firmware Version3.3
Supermicro ≫ X9sre/i Series Firmware Version3.3
Supermicro ≫ X9srh-7(t)f Firmware Version3.3
Supermicro ≫ X9srd-f Firmware Version3.3
Supermicro ≫ X9srw-f Firmware Version3.3
Supermicro ≫ X9srg-f Firmware Version3.3
Supermicro ≫ X9srl(-f) Firmware Version3.3
Supermicro ≫ X9sra Firmware Version3.3
Supermicro ≫ X9sae(-v) Firmware Version2.3
Supermicro ≫ X9scl+-f Firmware Version2.3
Supermicro ≫ X9scl(-f) Firmware Version2.3
Supermicro ≫ X9scm(-f) Firmware Version2.3
Supermicro ≫ X9scd Series Firmware Version2.3
Supermicro ≫ X9sca(-f) Firmware Version2.3
Supermicro ≫ X9sci-ln4(f) Firmware Version2.3
Supermicro ≫ X9qri-f Firmware Version3.3
Supermicro ≫ X9qr7-tf Firmware Version3.3
Supermicro ≫ X9qri-f+ Firmware Version3.3
Supermicro ≫ X9qr7-tf+ Firmware Version3.3
Supermicro ≫ B9dri Firmware Version3.3
Supermicro ≫ B9dr7 Firmware Version3.3
Supermicro ≫ B9drp Firmware Version3.3
Supermicro ≫ B9drg-3m Firmware Version3.3
Supermicro ≫ B9drg-e Firmware Version3.3
Supermicro ≫ B9drg Firmware Version3.3
Supermicro ≫ B9drt Firmware Version3.3
Supermicro ≫ B9qr7(-tp) Firmware Version3.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.1% | 0.285 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 10 | 3.9 | 6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
CWE-326 Inadequate Encryption Strength
The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.
CWE-522 Insufficiently Protected Credentials
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.