First published: Wed Mar 27 2024(Updated: )
An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Supermicro X11SSM | ||
Supermicro X11SAE-F | ||
Supermicro X11SSE-F |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-40288 is considered a high severity vulnerability due to the potential for exploitation through cross-site scripting (XSS).
To mitigate CVE-2023-40288, users should apply the latest firmware updates provided by Supermicro for affected models X11SSM-F, X11SAE-F, and X11SSE-F.
CVE-2023-40288 is classified as a cross-site scripting (XSS) vulnerability that can be exploited by attackers to execute scripts in the context of the victim's session.
CVE-2023-40288 affects Supermicro devices X11SSM-F, X11SAE-F, and X11SSE-F running firmware version 1.66.
Exploitation of CVE-2023-40288 could allow attackers to steal session cookies, redirect users, or perform actions on behalf of the victim.