CVE-2024-36432: Supermicro x11dpg-HGX2 Firmware

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

An arbitrary memory write vulnerability was discovered in Supermicro X11DPG-HGX2, X11PDG-QT, X11PDG-OT, and X11PDG-SN motherboards with BIOS firmware before 4.4.

Affected products

  • Supermicro x11dpg-HGX2 Firmware: before 4.4 (fixed in 4.4)
  • Supermicro x11pdg-Ot Firmware: before 4.4 (fixed in 4.4)
  • Supermicro x11pdg-Qt Firmware: before 4.4 (fixed in 4.4)
  • Supermicro x11pdg-Sn Firmware: before 4.4 (fixed in 4.4)

Published 2024-07-15. Last modified 2026-06-17.