VYPR
Unrated severityNVD Advisory· Published Jul 18, 2023· Updated Feb 13, 2025

Code injection via Dynamic Redfish Extension interface

CVE-2023-34330

Description

AMI SPx contains a vulnerability in the BMC where a user may inject code which could be executed via a Dynamic Redfish Extension interface. A successful exploit of this vulnerability may lead to a loss of confidentiality, integrity, and availability.

Affected products

3
  • Ami/SPxllm-fuzzy
  • Ami/MegaRACcpe-rescue2 versions
    12.0+ 1 more
    • (no CPE)range: 12.0
    • (no CPE)range: 13.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.