9.8
CVE-2023-35861
- EPSS 0.97%
- Published 31.07.2023 13:15:09
- Last modified 21.11.2024 08:08:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
A shell-injection vulnerability in email notifications on Supermicro motherboards (such as H12DST-B before 03.10.35) allows remote attackers to inject execute arbitrary commands as root on the BMC.
Data is provided by the National Vulnerability Database (NVD)
Supermicro ≫ H12dst-b Firmware Version < 03.10.35
Supermicro ≫ X13dai-t Firmware Version-
Supermicro ≫ X13ddw-a Firmware Version-
Supermicro ≫ X13deg-oa Firmware Version-
Supermicro ≫ X13deg-oad Firmware Version-
Supermicro ≫ X13deg-pvc Firmware Version-
Supermicro ≫ X13deg-qt Firmware Version-
Supermicro ≫ X13dei Firmware Version-
Supermicro ≫ X13dei-t Firmware Version-
Supermicro ≫ X13dem Firmware Version-
Supermicro ≫ X13det-b Firmware Version-
Supermicro ≫ X13dgu Firmware Version-
Supermicro ≫ X13dsf-a Firmware Version-
Supermicro ≫ X13qeh+ Firmware Version-
Supermicro ≫ X13sae Firmware Version-
Supermicro ≫ X13sae-f Firmware Version-
Supermicro ≫ X13san-c Firmware Version-
Supermicro ≫ X13san-c-wohs Firmware Version-
Supermicro ≫ X13san-e Firmware Version-
Supermicro ≫ X13san-e-wohs Firmware Version-
Supermicro ≫ X13san-h Firmware Version-
Supermicro ≫ X13san-h-wohs Firmware Version-
Supermicro ≫ X13san-l Firmware Version-
Supermicro ≫ X13san-l-wohs Firmware Version-
Supermicro ≫ X13saq Firmware Version-
Supermicro ≫ X13sav-lvds Firmware Version-
Supermicro ≫ X13sav-ps Firmware Version-
Supermicro ≫ X13saz-f Firmware Version-
Supermicro ≫ X13saz-q Firmware Version-
Supermicro ≫ X13sedw-f Firmware Version-
Supermicro ≫ X13seed-f Firmware Version-
Supermicro ≫ X13seed-sf Firmware Version-
Supermicro ≫ X13sefr-a Firmware Version-
Supermicro ≫ X13sei-f Firmware Version-
Supermicro ≫ X13sei-tf Firmware Version-
Supermicro ≫ X13sem-f Firmware Version-
Supermicro ≫ X13sem-tf Firmware Version-
Supermicro ≫ X13set-g Firmware Version-
Supermicro ≫ X13set-gc Firmware Version-
Supermicro ≫ X13sew-f Firmware Version-
Supermicro ≫ X13sew-tf Firmware Version-
Supermicro ≫ X13sra-tf Firmware Version-
Supermicro ≫ X13srn-e Firmware Version-
Supermicro ≫ X13srn-e-wohs Firmware Version-
Supermicro ≫ X13srn-h Firmware Version-
Supermicro ≫ X13srn-h-wohs Firmware Version-
Supermicro ≫ X13swa-tf Firmware Version-
Supermicro ≫ H13dsg-o-cpu Firmware Version-
Supermicro ≫ H13dsg-o-cpu-d Firmware Version-
Supermicro ≫ H13dsh Firmware Version-
Supermicro ≫ H13sae-mf Firmware Version-
Supermicro ≫ H13srd-f Firmware Version-
Supermicro ≫ H13ssf Firmware Version-
Supermicro ≫ H13ssh Firmware Version-
Supermicro ≫ H13ssl-n Firmware Version-
Supermicro ≫ H13ssl-nt Firmware Version-
Supermicro ≫ H13sst-g Firmware Version-
Supermicro ≫ H13sst-gc Firmware Version-
Supermicro ≫ H13ssw Firmware Version-
Supermicro ≫ X12dai-n6 Firmware Version-
Supermicro ≫ X12ddw-a6 Firmware Version-
Supermicro ≫ X12dgo-6 Firmware Version-
Supermicro ≫ X12dgq-r Firmware Version-
Supermicro ≫ X12dgu Firmware Version-
Supermicro ≫ X12dhm-6 Firmware Version-
Supermicro ≫ X12dpd-a6m25 Firmware Version-
Supermicro ≫ X12dpfr-an6 Firmware Version-
Supermicro ≫ X12dpg-ar Firmware Version-
Supermicro ≫ X12dpg-oa6 Firmware Version-
Supermicro ≫ X12dpg-oa6-gd2 Firmware Version-
Supermicro ≫ X12dpg-qbt6 Firmware Version-
Supermicro ≫ X12dpg-qr Firmware Version-
Supermicro ≫ X12dpg-qt6 Firmware Version-
Supermicro ≫ X12dpg-u6 Firmware Version-
Supermicro ≫ X12dpi-n6 Firmware Version-
Supermicro ≫ X12dpi-nt6 Firmware Version-
Supermicro ≫ X12dpl-i6 Firmware Version-
Supermicro ≫ X12dpl-nt6 Firmware Version-
Supermicro ≫ X12dpt-b6 Firmware Version-
Supermicro ≫ X12dpt-pt46 Firmware Version-
Supermicro ≫ X12dpt-pt6 Firmware Version-
Supermicro ≫ X12dpu-6 Firmware Version-
Supermicro ≫ X12dsc-6 Firmware Version-
Supermicro ≫ X12qch+ Firmware Version-
Supermicro ≫ X12sae Firmware Version-
Supermicro ≫ X12sae-5 Firmware Version-
Supermicro ≫ X12sca-5f Firmware Version-
Supermicro ≫ X12sca-f Firmware Version-
Supermicro ≫ X12scq Firmware Version-
Supermicro ≫ X12scv-lvds Firmware Version-
Supermicro ≫ X12scv-w Firmware Version-
Supermicro ≫ X12scz-f Firmware Version-
Supermicro ≫ X12scz-qf Firmware Version-
Supermicro ≫ X12scz-tln4f Firmware Version-
Supermicro ≫ X12sdv-10c-sp6f Firmware Version-
Supermicro ≫ X12sdv-10c-spt4f Firmware Version-
Supermicro ≫ X12sdv-14c-spt8f Firmware Version-
Supermicro ≫ X12sdv-16c-spt8f Firmware Version-
Supermicro ≫ X12sdv-20c-spt8f Firmware Version-
Supermicro ≫ X12sdv-4c-sp6f Firmware Version-
Supermicro ≫ X12sdv-4c-spt4f Firmware Version-
Supermicro ≫ X12sdv-4c-spt8f Firmware Version-
Supermicro ≫ X12sdv-8c-sp6f Firmware Version-
Supermicro ≫ X12sdv-8c-spt4f Firmware Version-
Supermicro ≫ X12sdv-8c-spt8f Firmware Version-
Supermicro ≫ X12sdv-8ce-sp4f Firmware Version-
Supermicro ≫ X12spa-tf Firmware Version-
Supermicro ≫ X12sped-f Firmware Version-
Supermicro ≫ X12spg-nf Firmware Version-
Supermicro ≫ X12spi-tf Firmware Version-
Supermicro ≫ X12spl-f Firmware Version-
Supermicro ≫ X12spl-ln4f Firmware Version-
Supermicro ≫ X12spm-ln4f Firmware Version-
Supermicro ≫ X12spm-ln6tf Firmware Version-
Supermicro ≫ X12spm-tf Firmware Version-
Supermicro ≫ X12spo-f Firmware Version-
Supermicro ≫ X12spo-ntf Firmware Version-
Supermicro ≫ X12spt-g Firmware Version-
Supermicro ≫ X12spt-gc Firmware Version-
Supermicro ≫ X12spt-pt Firmware Version-
Supermicro ≫ X12spw-f Firmware Version-
Supermicro ≫ X12spw-tf Firmware Version-
Supermicro ≫ X12spz-ln4f Firmware Version-
Supermicro ≫ X12spz-spln6f Firmware Version-
Supermicro ≫ X12std-f Firmware Version-
Supermicro ≫ X12ste-f Firmware Version-
Supermicro ≫ X12sth-f Firmware Version-
Supermicro ≫ X12sth-ln4f Firmware Version-
Supermicro ≫ X12sth-sys Firmware Version-
Supermicro ≫ X12stl-f Firmware Version-
Supermicro ≫ X12stl-if Firmware Version-
Supermicro ≫ X12stn-c Firmware Version-
Supermicro ≫ X12stn-c-wohs Firmware Version-
Supermicro ≫ X12stn-e Firmware Version-
Supermicro ≫ X12stn-e-wohs Firmware Version-
Supermicro ≫ X12stn-h Firmware Version-
Supermicro ≫ X12stn-h-wohs Firmware Version-
Supermicro ≫ X12stn-l Firmware Version-
Supermicro ≫ X12stn-l-wohs Firmware Version-
Supermicro ≫ X12stw-f Firmware Version-
Supermicro ≫ X12stw-tf Firmware Version-
Supermicro ≫ H12ssw-ntr Firmware Version-
Supermicro ≫ H12ssw-ntl Firmware Version-
Supermicro ≫ H12ssw-nt Firmware Version-
Supermicro ≫ H12ssw-inr Firmware Version-
Supermicro ≫ H12ssw-inl Firmware Version-
Supermicro ≫ H12ssw-in Firmware Version-
Supermicro ≫ H12ssw-an6 Firmware Version-
Supermicro ≫ H12sst-ps Firmware Version-
Supermicro ≫ H12ssl-nt Firmware Version-
Supermicro ≫ H12ssl-i Firmware Version-
Supermicro ≫ H12ssl-ct Firmware Version-
Supermicro ≫ H12ssl-c Firmware Version-
Supermicro ≫ H12ssg-anp6 Firmware Version-
Supermicro ≫ H12ssg-an6 Firmware Version-
Supermicro ≫ H12ssfr-an6 Firmware Version-
Supermicro ≫ H12ssff-an6 Firmware Version-
Supermicro ≫ H12dsu-inr Firmware Version-
Supermicro ≫ H12dsu-in Firmware Version-
Supermicro ≫ H12dst-b Firmware Version-
Supermicro ≫ H12dsi-nt6 Firmware Version-
Supermicro ≫ H12dsi-n6 Firmware Version-
Supermicro ≫ H12dsg-q-cpu6 Firmware Version-
Supermicro ≫ H12dsg-o-cpu Firmware Version-
Supermicro ≫ H12dgq-nt6 Firmware Version-
Supermicro ≫ H12dgo-6 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.97% | 0.753 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.