There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X12STW . An attacker can update the system firmware with a specially crafted image.
Metrics
Affected Vendors & Products
References
History
Fri, 19 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Supermicro
Supermicro mbd-x12stw |
|
| Vendors & Products |
Supermicro
Supermicro mbd-x12stw |
Fri, 19 Sep 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X12STW . An attacker can update the system firmware with a specially crafted image. | |
| Title | Supermicro BMC firmware update validation bypass | |
| Weaknesses | CWE-347 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Supermicro
Published: 2025-09-19T02:09:33.323Z
Updated: 2025-09-19T02:09:33.323Z
Reserved: 2025-07-21T06:46:51.613Z
Link: CVE-2025-7937
No data.
Status : Received
Published: 2025-09-19T03:15:50.033
Modified: 2025-09-19T03:15:50.033
Link: CVE-2025-7937
No data.