There is a vulnerability in the BMC firmware image authentication design 
 at Supermicro MBD-X12DPG-OA6
. An attacker can modify the firmware to bypass BMC inspection and bypass the signature verification process
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Tue, 04 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 04 Feb 2025 08:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | There is a vulnerability in the BMC firmware image authentication design at Supermicro MBD-X12DPG-OA6 . An attacker can modify the firmware to bypass BMC inspection and bypass the signature verification process | |
| Title | SMC BMC Firmware Image Authentication Design Issue | |
| Weaknesses | CWE-345 CWE-347  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: Supermicro
Published: 2025-02-04T07:59:26.354Z
Updated: 2025-02-04T14:38:14.400Z
Reserved: 2024-10-22T03:14:14.274Z
Link: CVE-2024-10237
Updated: 2025-02-04T14:38:10.441Z
Status : Received
Published: 2025-02-04T08:15:27.920
Modified: 2025-02-04T08:15:27.920
Link: CVE-2024-10237
No data.