Unrated severityNVD Advisory· Published Jan 2, 2020· Updated Aug 6, 2024
CVE-2013-3619
CVE-2013-3619
Description
Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before SMT_X9_317 and firmware for Supermicro X8 generation motherboards before SMT X8 312 contain harcoded private encryption keys for the (1) Lighttpd web server SSL interface and the (2) Dropbear SSH daemon.
Affected products
2- Range: <SMT_X9_317
- Supermicro/IPMIv5Range: before SMT_X9_317 and before SMT X8 312
Patches
Vulnerability mechanics
References
5- support.citrix.com/article/CTX216642mitrex_refsource_CONFIRM
- community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ipmi-firmware-vulnerabilitiesmitrex_refsource_MISC
- exchange.xforce.ibmcloud.com/vulnerabilities/89044mitrex_refsource_MISC
- support.citrix.com/article/CTX216642mitrex_refsource_CONFIRM
- www.supermicro.com/products/nfo/files/IPMI/CVE_Update.pdfmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.