VendorsAmimegarac_sp-xall versions
Vulnerabilities

Ami MegaRAC SP-X

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

30CVEs
CVE-2024-54085
Redfish Authentication Bypass
Published 2025-03-11 · Analyzed
10.0KEVEPSS 0.607
CVE-2022-40242
MegaRAC Default Credentials Vulnerability
Published 2022-12-05 · Modified
9.8EPSS 0.007
CVE-2022-40259
MegaRAC Default Credentials Vulnerability
Published 2022-12-05 · Modified
9.8EPSS 0.006
CVE-2023-34338
hard coded cryptographic key
Published 2023-07-05 · Modified
9.8EPSS 0.003
CVE-2023-37293
stack-based buffer overflow
Published 2024-01-09 · Modified
9.6EPSS 0.003
CVE-2023-3043
Stack-based Buffer Overflow BMC
Published 2024-01-09 · Modified
9.6EPSS 0.003
CVE-2023-34329
Authentication Bypass via HTTP Header Spoofing
Published 2023-07-18 · Modified
9.1EPSS 0.012
CVE-2023-34342
AMI BMC contains a vulnerability in the IPMI handler, where an attacker can upload and download arbitrary files under certain circumstances, which may lead to denial of service, escalation of privileges, information disclosure, or data tampering.
Published 2023-06-12 · Modified
9.1EPSS 0.005
CVE-2023-28863
AMI MegaRAC SPx12 and SPx13 devices have Insufficient Verification of Data Authenticity.
Published 2023-04-18 · Modified
9.1EPSS 0.004
CVE-2023-34334
AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, or data tampering.  
Published 2023-06-12 · Modified
8.8EPSS 0.008
CVE-2023-34343
AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, or data tampering.
Published 2023-06-12 · Modified
8.8EPSS 0.008
CVE-2023-34341
AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can read and write to arbitrary locations within the memory context of the IPMI server process, which may lead to code execution, denial of service, information disclosure, or data tampering.
Published 2023-06-12 · Modified
8.8EPSS 0.008
CVE-2022-26872
Password reset interception via API
Published 2023-01-30 · Modified
8.8EPSS 0.008
CVE-2023-34336
AMI BMC contains a vulnerability in the IPMI handler, where an attacker with the required privileges can cause a buffer overflow, which may lead to code execution, denial of service, or escalation of privileges.  
Published 2023-06-12 · Modified
8.8EPSS 0.007
CVE-2023-34330
Code injection via Dynamic Redfish Extension interface
Published 2023-07-18 · Modified
8.8EPSS 0.006
CVE-2023-34473
Usage of Hard-coded Credentials
Published 2023-07-05 · Modified
8.8EPSS 0.005
CVE-2023-37297
heap memory overflow
Published 2024-01-09 · Modified
8.8EPSS 0.003
CVE-2023-37296
Stack-based Buffer Overflow
Published 2024-01-09 · Modified
8.8EPSS 0.003
CVE-2023-37295
Heap-based Buffer Overflow
Published 2024-01-09 · Modified
8.8EPSS 0.003
CVE-2023-37294
Heap-based Buffer Overflow
Published 2024-01-09 · Modified
8.8EPSS 0.003
CVE-2023-34337
Inadequate Encryption Strength
Published 2023-07-05 · Modified
8.8EPSS 0.002
CVE-2023-34471
Missing Cryptographic Step
Published 2023-07-05 · Modified
8.1EPSS 0.003
CVE-2023-34333
Untrusted Pointer Dereference
Published 2024-01-09 · Modified
7.8EPSS 0.002
CVE-2023-34332
Untrusted Pointer Dereference in BMC
Published 2024-01-09 · Modified
7.8EPSS 0.002
CVE-2022-2827
AMI MegaRAC User Enumeration Vulnerability
Published 2022-12-05 · Modified
7.5EPSS 0.017
CVE-2023-25191
AMI MegaRAC SPX devices allow Password Disclosure through Redfish. The fixed versions are SPx_12-update-7.00 and SPx_13-update-5.00.
Published 2023-02-15 · Modified
7.5EPSS 0.006
CVE-2023-34345
AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can access arbitrary files, which may lead to information disclosure.
Published 2023-06-12 · Modified
6.5EPSS 0.007
CVE-2023-34472
AMI SPx contains a vulnerability in the BMC where an Attacker may cause an improper neutralization of CRLF sequences in HTTP Headers. A successful exploit of this vulnerability may lead to a loss of integrity.
Published 2023-07-05 · Modified
6.5EPSS 0.005
CVE-2023-25192
AMI MegaRAC SPX devices allow User Enumeration through Redfish. The fixed versions are SPx12-update-7.00 and SPx13-update-5.00.
Published 2023-02-15 · Modified
5.3EPSS 0.005
CVE-2023-34344
A vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a valid username
Published 2023-06-12 · Modified
5.3EPSS 0.005