Vulnerability Description
Supermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions.
CVSS Score
5.5
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Supermicro | X11Ssl-Cf Firmware | 1.63 |
| Supermicro | X11Ssl-Cf | - |
| Supermicro | X11Dac Firmware | - |
| Supermicro | X11Dac | - |
| Supermicro | X11Dai-N Firmware | - |
| Supermicro | X11Dai-N | - |
| Supermicro | X11Ddw-L Firmware | - |
| Supermicro | X11Ddw-L | - |
| Supermicro | X11Ddw-Nt Firmware | - |
| Supermicro | X11Ddw-Nt | - |
| Supermicro | X11Dgo-T Firmware | - |
| Supermicro | X11Dgo-T | - |
| Supermicro | X11Dgq Firmware | - |
| Supermicro | X11Dgq | - |
| Supermicro | X11Dpff-Sn Firmware | - |
| Supermicro | X11Dpff-Sn | - |
| Supermicro | X11Dpfr-S Firmware | - |
| Supermicro | X11Dpfr-S | - |
| Supermicro | X11Dpfr-Sn Firmware | - |
| Supermicro | X11Dpfr-Sn | - |
Related Weaknesses (CWE)
References
- http://supermicro.comProduct
- http://x11ssl-cf.comBroken Link
- https://www.supermicro.com/en/support/security_VRM_Jan_2023Vendor Advisory
- http://supermicro.comProduct
- http://x11ssl-cf.comBroken Link
- https://www.supermicro.com/en/support/security_VRM_Jan_2023Vendor Advisory
FAQ
What is CVE-2022-43309?
CVE-2022-43309 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Supermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions.
How severe is CVE-2022-43309?
CVE-2022-43309 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-43309?
Check the references section above for vendor advisories and patch information. Affected products include: Supermicro X11Ssl-Cf Firmware, Supermicro X11Ssl-Cf, Supermicro X11Dac Firmware, Supermicro X11Dac, Supermicro X11Dai-N Firmware.