Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gjh4-cqh2-hwv6

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

AMI BMC contains a vulnerability in the IPMI handler, where an unauthenticated host is allowed to write to a host SPI flash, bypassing secure boot protections. An exploitation of this vulnerability may lead to a loss of integrity or denial of service.

 

AMI BMC contains a vulnerability in the IPMI handler, where an unauthenticated host is allowed to write to a host SPI flash, bypassing secure boot protections. An exploitation of this vulnerability may lead to a loss of integrity or denial of service.

 

EPSS

Процентиль: 8%
0.0003
Низкий

7.7 High

CVSS3

Дефекты

CWE-288
CWE-306

Связанные уязвимости

CVSS3: 7.7
nvd
больше 2 лет назад

AMI BMC contains a vulnerability in the IPMI handler, where an unauthenticated host is allowed to write to a host SPI flash, bypassing secure boot protections. An exploitation of this vulnerability may lead to a loss of integrity or denial of service.  

EPSS

Процентиль: 8%
0.0003
Низкий

7.7 High

CVSS3

Дефекты

CWE-288
CWE-306