CVE-2013-6785: Path Traversal
Published Jan 23, 2020
·Updated
Directory traversal vulnerability in urlredirect.cgi in Supermicro IPMI before SMTX9315 allows authenticated attackers to read arbitrary files via the urlname parameter.
Affected Software
1 affected component
Supermicro Intelligent Platform Management Interface<smt_x9_315
Event History
Jan 23, 2020
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2013-6785.
2
What is the severity of CVE-2013-6785?
The severity of CVE-2013-6785 is medium with a CVSS score of 4.3.
3
What is the affected software for CVE-2013-6785?
The affected software for CVE-2013-6785 is Supermicro Intelligent Platform Management Interface (IPMI) before SMT_X9_315.
4
How does CVE-2013-6785 work?
CVE-2013-6785 is a directory traversal vulnerability that allows authenticated attackers to read arbitrary files via the url_name parameter in the url_redirect.cgi script.
5
How can I fix CVE-2013-6785?
To fix CVE-2013-6785, it is recommended to update Supermicro IPMI to version SMT_X9_315 or higher.