Supermicro MBD-X12STW
cpe:2.3:h:supermicro:x12ddw-a6:*:*:*:*:*:*:*, +41 more
A vulnerability exists in the Supermicro BMC firmware validation logic on the MBD-X12STW motherboard. This issue allows an attacker to bypass the firmware verification process and update the system firmware with a specially crafted image. The manipulated image can redirect the firmware update process to a fake table in the unsigned region, exploiting the improper verification of cryptographic signatures.
Exploitation of this vulnerability could lead to unauthorized firmware updates, potentially allowing for malicious modifications to the system's firmware.
Affected Supermicro motherboard SKUs will require a BMC update to address this vulnerability. An updated BMC firmware is being tested and validated by Supermicro. Please check the Release notes for the resolution.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.