CVE-2019-16650 Information
Feb 14, 2021
cve
Description
On Supermicro X10 and X11 products a client’s access privileges may be transferred to a different client that later has the same socket file descriptor number. In opportunistic circumstances an attacker can simply connect to the virtual media service and then connect virtual USB devices to the server managed by the BMC.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Reference
https://eclypsium.com/2019/09/03/usbanywhere-bmc-vulnerability-opens-servers-to-remote-attack/ https://github.com/eclypsium/USBAnywhere https://www.supermicro.com/support/security_BMC_virtual_media.cfm
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
CHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
10.0
Share on: