An issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66 devices. An attacker could exploit an XSS issue.
References
| Link | Resource |
|---|---|
| https://www.supermicro.com/en/support/security_BMC_IPMI_Oct_2023 | Vendor Advisory |
| https://www.supermicro.com/en/support/security_center#%21advisories | Vendor Advisory |
| https://www.supermicro.com/en/support/security_BMC_IPMI_Oct_2023 | Vendor Advisory |
| https://www.supermicro.com/en/support/security_center#%21advisories | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
No history.
Information
Published : 2024-03-27 04:15
Updated : 2025-06-17 14:08
NVD link : CVE-2023-40284
Mitre link : CVE-2023-40284
CVE.ORG link : CVE-2023-40284
JSON object : View
Products Affected
supermicro
- x11sae-f
- x11ssm-f_firmware
- x11sae-f_firmware
- x11ssm-f
- x11sse-f_firmware
- x11sse-f
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
