Database/Firmware, BMC & network fabric
Supermicro BMC firmware validation (MBD-X12STW): RoT bypass, crafted firmware image accepted
Impact
RoT bypass, crafted firmware image accepted; demonstrates the 2024 fix was incomplete
Who can reach it
Network, high-privilege
What to do
Second BMC flash cycle on nodes already patched for CVE-2024-10237 — the operational cost is that a fleet gets flashed twice for the same class of bug
Fleet impact
How widespread
very common - same Supermicro BMC image family
Cost to remediate
firmware-flash - a second flash cycle on nodes already flashed once; the first remediation round did not hold
Why it hits the whole fleet
Shows fleet firmware remediation is not one-and-done: the patch was bypassed, forcing a repeat out-of-band flash campaign across the same node population.
References
Related entries
- Supermicro BMC web server request handling on MBD-X13SEDW-F: Any account that can log into the BMC web interface canCVE-2025-8076 · Supermicro BMC web server request handling on MBD-X13SEDW-FHigh
- Supermicro BMC web interface (stack buffer overflow, X13SEDW-F): Second authenticated stack overflow in the BMC webCVE-2025-8727 · Supermicro BMC web interface (stack buffer overflow, X13SEDW-F)High
- Perle IOLAN STS/SCS terminal server (firmware before 6.0): A logged-in user of the restricted admin shell (TelnetCVE-2026-23759 · Perle IOLAN STS/SCS terminal server (firmware before 6.0)High
- Supermicro BMC SMTP service configuration handler on AS-2115HS-TNR and related boards: Crafted characters injectedCVE-2026-3820 · Supermicro BMC SMTP service configuration handler on AS-2115HS-TNR and related boardsHigh
- Dell OMSA: high-privileged remote user escalates beyond their assigned OMSA roleCVE-2026-81445 · Dell OpenManage Server Administrator (privilege management, admin-level)High
- Dell OMSA: remote heap overflow gives code execution to a high-privileged accountCVE-2026-81477 · Dell OpenManage Server Administrator (remote heap-based buffer overflow)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.