⤷ Title: HPE Cray Vulnerability (CVE-2024-540385): Authentication Bypass Threat, CVSS 10 Alert
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 18 Mar 2025 01:48:00 +0000
════════════════════════
⌗ Tags: #Vulnerability #BMC firmware #CVE_2024_540385 #HPE Cray XD670
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 18 Mar 2025 01:48:00 +0000
════════════════════════
⌗ Tags: #Vulnerability #BMC firmware #CVE_2024_540385 #HPE Cray XD670
Cybersecurity News
HPE Cray Vulnerability (CVE-2024-540385): Authentication Bypass Threat, CVSS 10 Alert
Explore CVE-2024-540385, a critical vulnerability in HPE Cray XD670 servers that poses serious remote authentication risks.
⤷ Title: Critical AMI BMC Vulnerability: Patch Your ASUS Workstation Now
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 25 Apr 2025 09:22:54 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI #ASUS #BMC #CVE_2024_54085 #firmware #patch #security #update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 25 Apr 2025 09:22:54 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI #ASUS #BMC #CVE_2024_54085 #firmware #patch #security #update
Daily CyberSecurity
Critical AMI BMC Vulnerability: Patch Your ASUS Workstation Now
Critical security flaw (CVE-2024-54085) in AMI BMC software threatens PCs. ASUS releases urgent firmware updates for workstation motherboards. Update now!
⤷ Title: CISA Warns: Critical AMI MegaRAC Firmware Flaw (CVE-2024-54085, CVSS 10.0) Actively Exploited for Server Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:48:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI MegaRAC #authentication bypass #Baseboard Management Controller #BMC #CISA #CVE_2024_54085 #cybersecurity #Exploited in Wild #firmware #RCE #remote code execution #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:48:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI MegaRAC #authentication bypass #Baseboard Management Controller #BMC #CISA #CVE_2024_54085 #cybersecurity #Exploited in Wild #firmware #RCE #remote code execution #vulnerability
Penetration Testing Tools
CISA Warns: Critical AMI MegaRAC Firmware Flaw (CVE-2024-54085, CVSS 10.0) Actively Exploited for Server Takeover
CISA adds critical AMI MegaRAC firmware flaw (CVE-2024-54085, CVSS 10.0) to KEV, confirming active exploitation. Attackers can bypass authentication to gain full server control.
⤷ Title: Critical Security Alert: Supermicro BMC Vulnerabilities Enable Persistent Backdoor Access
════════════════════════
𐀪 Author: Technijian
════════════════════════
ⴵ Time: Thu, 25 Sep 2025 09:54:09 GMT
════════════════════════
⌗ Tags: #supermicro #critical_security_alert #bmc_vulnerabilities #firmwaresecurity #cybersecurity
════════════════════════
𐀪 Author: Technijian
════════════════════════
ⴵ Time: Thu, 25 Sep 2025 09:54:09 GMT
════════════════════════
⌗ Tags: #supermicro #critical_security_alert #bmc_vulnerabilities #firmwaresecurity #cybersecurity
Medium
Critical Security Alert: Supermicro BMC Vulnerabilities Enable Persistent Backdoor Access
Original Article…
⤷ Title: Critical Flaws in Supermicro BMC Enable Irreversible AI Server Rootkits Below the OS Level
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 03:59:57 +0000
════════════════════════
⌗ Tags: #Vulnerability #Binarly #BMC #CVE_2025_7937 #data center #firmware #rootkit #Supermicro #Supply Chain #UEFI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 03:59:57 +0000
════════════════════════
⌗ Tags: #Vulnerability #Binarly #BMC #CVE_2025_7937 #data center #firmware #rootkit #Supermicro #Supply Chain #UEFI
Penetration Testing Tools
Critical Flaws in Supermicro BMC Enable Irreversible AI Server Rootkits Below the OS Level
Critical Supermicro BMC flaws (CVE-2025-7937/6198) enable malicious, irreversible firmware to be installed, compromising servers at the root-of-trust level.
⤷ Title: Control-M CVE-2026-10539: Unauthenticated Remote Command Injection (CVSS 9.5)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 15:21:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BMC #Command Injection #Control_M #CVE_2026_10539 #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 15:21:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BMC #Command Injection #Control_M #CVE_2026_10539 #Vulnerability
Daily CyberSecurity
Control-M CVE-2026-10539: Unauthenticated Remote Command Injection (CVSS 9.5)
TL;DR BMC disclosed a critical flaw in Control-M/Server tracked as CVE-2026-10539. The Control-M command injection bug scores 9.5 on CVSSv4. It lets an unauthenticated attacker run commands on the…
⤷ Title: 22-Year-Old IPMI Flaw Exposes 24,000 Servers to Offline Password Cracking
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 09:10:26 +0000
════════════════════════
⌗ Tags: #Security #22_Year_Old IPMI Flaw Exposes 24K Servers to Offline Password Cracking #BMC #Cybersecurity #IPMI #Lava #Password #Vulnerability
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 09:10:26 +0000
════════════════════════
⌗ Tags: #Security #22_Year_Old IPMI Flaw Exposes 24K Servers to Offline Password Cracking #BMC #Cybersecurity #IPMI #Lava #Password #Vulnerability
Hackread
22-Year-Old IPMI Flaw Exposes 24,000 Servers to Offline Password Cracking
Researchers found 24,650 public BMC interfaces leaking IPMI password hashes, exposing servers to offline password cracking through a decades-old protocol flaw.
⤷ Title: 36,872 Exposed BMCs Leak Password Hashes and Face In-the-Wild Attacks via CVE-2013-4786
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 15:00:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BMC #CVE_2013_4786 #Data Center Security #HPE iLO #IPMI #password_cracking #Supermicro
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 15:00:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BMC #CVE_2013_4786 #Data Center Security #HPE iLO #IPMI #password_cracking #Supermicro
Daily CyberSecurity
36,872 Exposed BMCs Leak Password Hashes and Face In-the-Wild Attacks via CVE-2013-4786
TL;DR Researchers at LAVA found 36,872 exposed BMCs on the public internet. Most leaked password-derived hashes before login through CVE-2013-4786, a 20-year-old IPMI 2.0 flaw rated high-severity.…