First published: Wed Mar 27 2024(Updated: )
An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Supermicro X11SSM | ||
Supermicro X11SAE-F | ||
Supermicro X11SSE-F |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-40287 is considered a high-severity vulnerability due to its potential to allow cross-site scripting (XSS) attacks.
To fix CVE-2023-40287, update the firmware of your Supermicro devices to the latest version provided by Supermicro.
CVE-2023-40287 affects Supermicro X11SSM-F, X11SAE-F, and X11SSE-F devices running firmware version 1.66.
CVE-2023-40287 can allow attackers to execute arbitrary scripts in the context of the user's browser, potentially leading to data theft or unauthorized actions.
While the best solution is to update the firmware, temporary measures might include restricting access to the affected devices or applying relevant security configurations.