7.5
CWE
522
Advisory Published
Updated

CVE-2013-3620

First published: Thu Jan 02 2020(Updated: )

Hardcoded WSMan credentials in Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before 3.15 (SMT_X9_315) and firmware for Supermicro X8 generation motherboards before SMT X8 312.

Credit: cret@cert.org

Affected SoftwareAffected VersionHow to fix
Supermicro Smt X9 Firmware<3.15
Supermicro Sh7758
Supermicro Smt X8 Firmware<3.12
Supermicro Sh7757
Citrix Netscaler Sdx Firmware=10
Citrix Netscaler Sdx
Citrix Netscaler Firmware
Citrix NetScaler
Citrix Netscaler Sd-wan Firmware
Citrix NetScaler SD-WAN

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the vulnerability ID for this vulnerability?

    The vulnerability ID for this vulnerability is CVE-2013-3620.

  • What is the severity of CVE-2013-3620?

    The severity of CVE-2013-3620 is high with a severity value of 7.5.

  • Which software versions are affected by CVE-2013-3620?

    Supermicro X9 generation motherboards with firmware before 3.15 (SMT_X9_315) and Supermicro X8 generation motherboards with firmware before SMT X8 312 are affected by CVE-2013-3620.

  • How can I fix CVE-2013-3620?

    To fix CVE-2013-3620, update the firmware for the affected Supermicro motherboards to version 3.15 (SMT_X9_315) for X9 generation motherboards and version 3.12 (SMT X8 312) for X8 generation motherboards.

  • Where can I find more information about CVE-2013-3620?

    You can find more information about CVE-2013-3620 at the following references: [1] http://support.citrix.com/article/CTX216642, [2] https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ipmi-firmware-vulnerabilities, [3] https://exchange.xforce.ibmcloud.com/vulnerabilities/89045

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203