Firmware Authentication Flaw in Supermicro BMC Products
CVE-2024-10237
7.2HIGH
What is CVE-2024-10237?
The firmware of the Supermicro BMC on the MBD-X12DPG-OA6 motherboard contains a design flaw in the authentication process. This vulnerability allows an attacker to manipulate the firmware, thereby bypassing the expected BMC inspection and circumventing the signature verification mechanisms. Such an exploitation could enable unauthorized modifications, raising serious security risks for organizations relying on affected hardware.
Affected Version(s)
MBD-X12DPG-OA6 BMC 1.04.16