CVE-2025-7704
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2025-11-13
Last updated on: 2025-11-13
Assigner: Super Micro Computer, Inc.
Description
Description
Supermicro BMC Insyde SMASH shell program has a stacked-based overflow vulnerability
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| supermicro | bmc | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-121 | A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function). |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a stack-based overflow in the Supermicro BMC Insyde SMASH shell program. It occurs when the program improperly handles input, allowing an attacker to overflow the stack, which can lead to unexpected behavior or potential exploitation.
How can this vulnerability impact me? :
The vulnerability can impact you by allowing an attacker with network access and low privileges to cause limited integrity and availability issues on the affected system. This could result in disruption or partial compromise of the system's operation.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70