Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-34330

Опубликовано: 18 июл. 2023
Источник: nvd
CVSS3: 8.2
CVSS3: 8.8
EPSS Низкий

Описание

AMI SPx contains a vulnerability in the BMC where a user may inject code which could be executed via a Dynamic Redfish Extension interface. A successful exploit of this vulnerability may lead to a loss of confidentiality, integrity, and availability.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:ami:megarac_sp-x:12:-:*:*:*:*:*:*
cpe:2.3:o:ami:megarac_sp-x:13:-:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00041
Низкий

8.2 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-94
CWE-94

Связанные уязвимости

CVSS3: 8.2
github
больше 2 лет назад

AMI SPx contains a vulnerability in the BMC where a User may cause a improper control of generation of code by Dynamic Redfish Extension. A successful exploit of this vulnerability may lead to a loss of confidentiality, integrity, and availability. 

EPSS

Процентиль: 12%
0.00041
Низкий

8.2 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-94
CWE-94