Home/Product/asus asmb8 ikvm firmware
Product

asus asmb8 ikvm firmware

19 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-26602
<= 1.14.51
ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as
9.8CRITICAL
CVE-2021-28205
all versions
The specific function in ASUS BMC’s firmware Web management page (Delete SOL video file function) does not filter the specific p
4.9MEDIUM
CVE-2021-28204
all versions
The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not filter the spec
7.2HIGH
CVE-2021-28203
all versions
The Web Set Media Image function in ASUS BMC’s firmware Web management page does not filter the specific parameter. As obtaining
7.2HIGH
CVE-2021-28189
all versions
The SMTP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, r
4.9MEDIUM
CVE-2021-28188
all versions
The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not verify the stri
4.9MEDIUM
CVE-2021-28187
all versions
The specific function in ASUS BMC’s firmware Web management page (Generate new SSL certificate) does not verify the string lengt
4.9MEDIUM
CVE-2021-28186
all versions
The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-2 acquisition) does not verify the strin
4.9MEDIUM
CVE-2021-28185
all versions
The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-1 acquisition) does not verify the strin
4.9MEDIUM
CVE-2021-28184
all versions
The Active Directory configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered
4.9MEDIUM
CVE-2021-28183
all versions
The specific function in ASUS BMC’s firmware Web management page (Web License configuration setting) does not verify the string
4.9MEDIUM
CVE-2021-28182
all versions
The Web Service configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by u
4.9MEDIUM
CVE-2021-28181
all versions
The specific function in ASUS BMC’s firmware Web management page (Remote video configuration setting) does not verify the string
4.9MEDIUM
CVE-2021-28180
all versions
The specific function in ASUS BMC’s firmware Web management page (Audit log configuration setting) does not verify the string le
4.9MEDIUM
CVE-2021-28179
all versions
The specific function in ASUS BMC’s firmware Web management page (Media support configuration setting) does not verify the strin
4.9MEDIUM
CVE-2021-28178
all versions
The UEFI configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, r
4.9MEDIUM
CVE-2021-28177
all versions
The LDAP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, r
4.9MEDIUM
CVE-2021-28176
all versions
The DNS configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, re
4.9MEDIUM
CVE-2021-28175
all versions
The Radius configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users,
4.9MEDIUM
threatengine.sh