Skip to main content

Vendor/product archive

openbmcs / openbmcs CVEs

Beta · best-effort

5 CVEs tagged to openbmcs / openbmcs0 Critical, 3 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-47718

Published Dec 9, 2025

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attack…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2021-47704

Published Dec 9, 2025

OpenBMCS 2.4 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting arbitrary SQL code. Attackers can send GET req…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2021-47703

Published Dec 9, 2025

OpenBMCS 2.4 contains an unauthenticated SSRF vulnerability that allows attackers to bypass firewalls and initiate service and network enumeration on the internal network through…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-47702

Published Dec 9, 2025

OpenBMCS 2.4 contains a CSRF vulnerability that allows attackers to perform actions with administrative privileges by exploiting the sendFeedback.php endpoint. Attackers can submi…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-47701

Published Dec 9, 2025

OpenBMCS 2.4 allows an attacker to escalate privileges from a read user to an admin user by manipulating permissions and exploiting a vulnerability in the update_user_permissions.…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1