CVE-2013-3620: High severity supermicro smt x9 firmware vulnerability
Hardcoded WSMan credentials in Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before 3.15 (SMTX9315) and firmware for Supermicro X8 generation motherboards before SMT X8 312.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2013-3620.
What is the severity of CVE-2013-3620?
The severity of CVE-2013-3620 is high with a severity value of 7.5.
Which software versions are affected by CVE-2013-3620?
Supermicro X9 generation motherboards with firmware before 3.15 (SMT_X9_315) and Supermicro X8 generation motherboards with firmware before SMT X8 312 are affected by CVE-2013-3620.
How can I fix CVE-2013-3620?
To fix CVE-2013-3620, update the firmware for the affected Supermicro motherboards to version 3.15 (SMT_X9_315) for X9 generation motherboards and version 3.12 (SMT X8 312) for X8 generation motherboards.
Where can I find more information about CVE-2013-3620?
You can find more information about CVE-2013-3620 at the following references: [1] http://support.citrix.com/article/CTX216642, [2] https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ipmi-firmware-vulnerabilities, [3] https://exchange.xforce.ibmcloud.com/vulnerabilities/89045