NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary files under certain circumstances, which may lead to denial of service, escalation of privileges, information disclosure and data tampering.
References
Link | Resource |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5435 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-01-12 20:15
Updated : 2023-01-24 08:01
NVD link : CVE-2022-42287
Mitre link : CVE-2022-42287
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
nvidia
- bmc
- dgx_a100