Improper input validation in Satellite Management Controller (SMC) may allow an attacker with privileges to manipulate Redfish® API commands to remove files from the local root directory, potentially resulting in data corruption.
History

Thu, 25 Sep 2025 08:30:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd instinct Mi300x
Amd satellite Management Controller
Vendors & Products Amd
Amd instinct Mi300x
Amd satellite Management Controller

Wed, 24 Sep 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 23 Sep 2025 21:45:00 +0000

Type Values Removed Values Added
Description Improper input validation in Satellite Management Controller (SMC) may allow an attacker with privileges to manipulate Redfish® API commands to remove files from the local root directory, potentially resulting in data corruption.
Weaknesses CWE-241
References
Metrics cvssV3_1

{'score': 5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2025-09-23T21:38:22.057Z

Updated: 2025-09-24T13:16:47.376Z

Reserved: 2024-01-03T16:43:14.976Z

Link: CVE-2024-21935

cve-icon Vulnrichment

Updated: 2025-09-24T13:16:40.779Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-09-23T22:15:33.183

Modified: 2025-09-24T18:11:24.520

Link: CVE-2024-21935

cve-icon Redhat

No data.