VDB

GCVE-110-BRLY-2023-023

GCVE-110-BRLY-2023-023
Advisory Published
Vulnetix · Advisory published September 16, 2024
BRLY-2023-023 High BINARLY team has discovered a stored DOM-based cross-site scripting (XSS) vulnerability in the `man_ikvm_html5_bootstrap` webpage that uses `lang` local storage item, included in the web server component of Supermicro BMC IPMI firmware, allowing a possible attacker to gain access to an account with administrator privileges.

Browse GCVE Records

1,280 records in the GCVE database · Updated September 7, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›