cve/2020/CVE-2020-15046.md
2024-05-25 21:48:12 +02:00

757 B

CVE-2020-15046

Description

The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to exploit a cgi/config_user.cgi CSRF issue to add new admin users. The fixed versions are BIOS 3.2 and firmware 03.88.

POC

Reference

Github

No PoCs found on GitHub currently.