Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ami Subscribe
Filtered by product Megarac Sp-x
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40242 1 Ami 1 Megarac Sp-x 2023-02-28 N/A 9.8 CRITICAL
MegaRAC Default Credentials Vulnerability
CVE-2022-2827 1 Ami 1 Megarac Sp-x 2023-02-28 N/A 7.5 HIGH
AMI MegaRAC User Enumeration Vulnerability
CVE-2023-25192 1 Ami 1 Megarac Sp-x 2023-02-24 N/A 5.3 MEDIUM
AMI MegaRAC SPX devices allow User Enumeration through Redfish. The fixed versions are SPx12-update-7.00 and SPx13-update-5.00.
CVE-2023-25191 1 Ami 1 Megarac Sp-x 2023-02-24 N/A 7.5 HIGH
AMI MegaRAC SPX devices allow Password Disclosure through Redfish. The fixed versions are SPx_12-update-7.00 and SPx_13-update-5.00.
CVE-2022-40259 1 Ami 1 Megarac Sp-x 2023-02-23 N/A 9.8 CRITICAL
MegaRAC Default Credentials Vulnerability
CVE-2022-26872 1 Ami 1 Megarac Sp-x 2023-02-08 N/A 8.8 HIGH
AMI Megarac Password reset interception via API