Description


NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locations within the memory context of the IPMI server process, which may lead to code execution, denial of service, information disclosure and data tampering.

Related CPE's


Vulnerable

Weaknesses



CWE-119


NVD-CWE-noinfo

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

7.2 · High

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-01-13T01:15:08.043Z

3 years ago

Last modified

2024-11-21T06:24:38.847Z

1 year ago