Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attackers to read arbitrary files via the url_name parameter.
References
Link | Resource |
---|---|
https://blog.rapid7.com/2013/11/06/supermicro-ipmi-firmware-vulnerabilities/ | Not Applicable |
https://www.tenable.com/cve/CVE-2013-6785 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-01-23 07:15
Updated : 2020-02-04 12:27
NVD link : CVE-2013-6785
Mitre link : CVE-2013-6785
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
supermicro
- intelligent_platform_management_interface