There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X12STW . An attacker can update the system firmware with a specially crafted image.
Metrics
Affected Vendors & Products
References
History
Fri, 19 Sep 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 19 Sep 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Supermicro
Supermicro mbd-x12stw |
|
Vendors & Products |
Supermicro
Supermicro mbd-x12stw |
Fri, 19 Sep 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X12STW . An attacker can update the system firmware with a specially crafted image. | |
Title | Supermicro BMC firmware update validation bypass | |
Weaknesses | CWE-347 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Supermicro
Published: 2025-09-19T02:09:33.323Z
Updated: 2025-09-20T03:55:39.366Z
Reserved: 2025-07-21T06:46:51.613Z
Link: CVE-2025-7937

Updated: 2025-09-19T13:09:53.569Z

Status : Awaiting Analysis
Published: 2025-09-19T03:15:50.033
Modified: 2025-09-19T16:00:27.847
Link: CVE-2025-7937

No data.