CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

supermicro

x11sat_firmware

6 known vulnerabilities · sorted by CVSS score

CVE-2023-33412
HIGH8.8

The web interface in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions before 3.17.02, allows remote authenticated users to execute arbitrary commands via a crafted request targeting vulnerable cgi endpoints.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023
CVE-2023-33413
HIGH8.8

The configuration functionality in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions through 3.17.02, allows remote authenticated users to execute arbitrary commands.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023
CVE-2023-34853
HIGH7.8

Buffer Overflow vulnerability in Supermicro motherboard X12DPG-QR 1.4b allows local attackers to hijack control flow via manipulation of SmcSecurityEraseSetupVar variable.

supermicro / x12dai-n6_firmware+270
Local
Published Aug 22, 2023
CVE-2023-33411
HIGH7.5

A web server in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions up to 3.17.02, allows remote unauthenticated users to perform directory traversal, potentially disclosing sensitive information.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023
CVE-2018-13787
MEDIUM6.7

Certain Supermicro X11S, X10, X9, X8SI, K1SP, C9X299, C7, B1, A2, and A1 products have a misconfigured Descriptor Region, allowing OS programs to modify firmware.

supermicro / x11ssz_firmware+109
Local
Published Jul 9, 2018
CVE-2022-43309
MEDIUM5.5

Supermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions.

supermicro / x11ssl-cf_firmware+146
Local
Published Apr 7, 2023