Supermicro X11 Devices Vulnerable to XSS Attack
CVE-2023-40287

Currently unrated

Key Information:

Vendor

Supermicro

Vendor
CVE Published:
27 March 2024

What is CVE-2023-40287?

A cross-site scripting vulnerability has been identified in various Supermicro X11 series devices, specifically affecting models X11SSM-F, X11SAE-F, and X11SSE-F, all running version 1.66. This flaw enables an attacker to inject malicious scripts into web pages viewed by other users, which can lead to unauthorized actions, data exposure, or further exploitation of the affected systems. The vulnerability highlights the importance of applying security patches and updates promptly to mitigate potential risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-40287 : Supermicro X11 Devices Vulnerable to XSS Attack