CVE-2013-3623

Multiple stack-based buffer overflows in cgi/close_window.cgi in the web interface in the Intelligent Platform Management Interface (IPMI) with firmware before 3.15 (SMT_X9_315) on Supermicro X9 generation motherboards allow remote attackers to execute arbitrary code via the (1) sess_sid or (2) ACT parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:supermicro:intelligent_platform_management_firmware:*:-:-:*:-:-:x9_generation_motherboards:*
cpe:2.3:o:supermicro:intelligent_platform_management_firmware:2.24:-:-:*:-:-:x9_generation_motherboards:*

History

No history.

Information

Published : 2013-12-10 16:11

Updated : 2024-02-04 18:16


NVD link : CVE-2013-3623

Mitre link : CVE-2013-3623

CVE.ORG link : CVE-2013-3623


JSON object : View

Products Affected

supermicro

  • intelligent_platform_management_firmware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer