| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-34471 | Missing Cryptographic Step | AMI | MegaRAC_SPx | Medium | 6.3 | 2023-07-05 18:05:43 | Deep Dive |
| CVE-2023-34338 | hard coded cryptographic key | AMI | MegaRAC_SPx | High | 7.1 | 2023-07-05 18:02:38 | Deep Dive |
| CVE-2023-34337 | Inadequate Encryption Strength | AMI | MegaRAC_SPx | High | 7.6 | 2023-07-05 18:01:27 | Deep Dive |
| CVE-2023-26299 | HP PC 安全漏洞 | HP Inc. | HP PC products using AMI UEFI Firmware | 高危 | - | 2023-06-30 15:40:10 | Deep Dive |
| CVE-2023-34336 | BMC AMI 安全漏洞 | AMI | MegaRAC_SPx | High | 8.1 | 2023-06-12 17:08:21 | Deep Dive |
| CVE-2023-34335 | BMC AMI 访问控制错误漏洞 | AMI | MegaRAC_SPx | High | 7.7 | 2023-06-12 17:06:57 | Deep Dive |
| CVE-2023-34334 | BMC AMI 操作系统命令注入漏洞 | AMI | MegaRAC_SPx | High | 7.2 | 2023-06-12 17:04:48 | Deep Dive |
| CVE-2023-34343 | BMC AMI 操作系统命令注入漏洞 | AMI | MegaRAC_SPx | High | 7.2 | 2023-06-12 17:02:38 | Deep Dive |
| CVE-2023-34342 | BMC AMI 路径遍历漏洞 | AMI | MegaRAC_SPx | Medium | 6.0 | 2023-06-12 17:01:33 | Deep Dive |
| CVE-2023-34341 | BMC AMI 缓冲区错误漏洞 | AMI | MegaRAC_SPx | High | 7.2 | 2023-06-12 17:00:01 | Deep Dive |
| CVE-2023-34345 | BMC AMI 路径遍历漏洞 | AMI | MegaRAC_SPx | Medium | 6.5 | 2023-06-12 16:58:01 | Deep Dive |
| CVE-2023-34344 | A vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a valid username | AMI | MegaRAC_SPx | Medium | 5.3 | 2023-06-12 16:54:19 | Deep Dive |
| CVE-2022-43779 | HP PC 安全漏洞 | HP Inc. | HP PC products using AMI UEFI Firmware | 高危 | - | 2023-02-03 16:42:10 | Deep Dive |
| CVE-2022-40258 | Weak password hashes for Redfish & API | AMI | MegaRAC SPx-12 | Medium | 5.3 | 2023-01-31 00:53:48 | Deep Dive |
| CVE-2022-26872 | Password reset interception via API | AMI | MegaRAC SPx-12 | High | 8.3 | 2023-01-30 15:55:39 | Deep Dive |
| CVE-2022-2827 | AMI MegaRAC User Enumeration Vulnerability | AMI | MegaRAC SPx12 | High | 7.5 | 2022-12-05 21:35:37 | Deep Dive |
| CVE-2022-40259 | MegaRAC Default Credentials Vulnerability | AMI | MegaRAC SPx12 | High | 8.3 | 2022-12-05 21:33:13 | Deep Dive |
| CVE-2022-40242 | MegaRAC Default Credentials Vulnerability | AMI | MegaRAC SPx12 | High | 7.5 | 2022-12-05 21:29:02 | Deep Dive |
| CVE-2022-40262 | The arbitrary write vulnerability in S3Resume2Pei leads to arbitrary code execution during PEI phase. | AMI | Aptio | 高危 | - | 2022-09-20 17:35:36 | Deep Dive |
| CVE-2022-40261 | SMM memory corruption vulnerability in OverClockSmiHandler SMM driver | AMI | Aptio | 高危 | - | 2022-09-20 17:35:35 | Deep Dive |