CVE-2013-3623: Buffer Overflow
Multiple stack-based buffer overflows in cgi/closewindow.cgi in the web interface in the Intelligent Platform Management Interface (IPMI) with firmware before 3.15 (SMTX9315) on Supermicro X9 generation motherboards allow remote attackers to execute arbitrary code via the (1) sesssid or (2) ACT parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3623?
CVE-2013-3623 is considered to have a high severity due to the potential for remote code execution.
How do I fix CVE-2013-3623?
To mitigate CVE-2013-3623, update the firmware of the Supermicro Intelligent Platform Management Interface to version 3.15 or later.
What devices are affected by CVE-2013-3623?
CVE-2013-3623 affects Supermicro X9 generation motherboards with versions of the Intelligent Platform Management Firmware earlier than 3.15.
What is the exploit behavior associated with CVE-2013-3623?
CVE-2013-3623 can be exploited by remote attackers to execute arbitrary code by sending crafted input to the web interface.
Are there any known exploits for CVE-2013-3623?
Yes, there are known public exploits that can leverage CVE-2013-3623 vulnerabilities to gain unauthorized access.