CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

supermicro

x13san-c-wohs_firmware

5 known vulnerabilities · sorted by CVSS score

CVE-2023-35861
CRITICAL9.8

A shell-injection vulnerability in email notifications on Supermicro motherboards (such as H12DST-B before 03.10.35) allows remote attackers to inject execute arbitrary commands as root on the BMC.

supermicro / h12dst-b_firmware+165
Network
Published Jul 31, 2023
CVE-2023-33412
HIGH8.8

The web interface in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions before 3.17.02, allows remote authenticated users to execute arbitrary commands via a crafted request targeting vulnerable cgi endpoints.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023
CVE-2023-33413
HIGH8.8

The configuration functionality in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions through 3.17.02, allows remote authenticated users to execute arbitrary commands.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023
CVE-2023-34853
HIGH7.8

Buffer Overflow vulnerability in Supermicro motherboard X12DPG-QR 1.4b allows local attackers to hijack control flow via manipulation of SmcSecurityEraseSetupVar variable.

supermicro / x12dai-n6_firmware+270
Local
Published Aug 22, 2023
CVE-2023-33411
HIGH7.5

A web server in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions up to 3.17.02, allows remote unauthenticated users to perform directory traversal, potentially disclosing sensitive information.

supermicro / m11sdv-4c-ln4f_firmware+361
Network
Published Dec 7, 2023