CVE-2022-26872: Password reset interception via API
AMI Megarac Password reset interception via API
Affected Software
Remediation
Information
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2022-26872?
CVE-2022-26872 refers to a vulnerability in AMI Megarac SP-X that allows for interception of password reset requests via the API.
What is the severity of CVE-2022-26872?
CVE-2022-26872 has a severity keyword of 'high' and a CVSS score of 8.8, indicating a significant security risk.
How does CVE-2022-26872 affect AMI Megarac SP-X?
CVE-2022-26872 affects versions 12 and 13 of AMI Megarac SP-X, allowing an attacker to intercept password reset requests through the API.
Is there a fix available for CVE-2022-26872?
Yes, a fix is available for CVE-2022-26872. It is recommended to refer to the vendor's security advisory for specific steps to mitigate the vulnerability.
Where can I find more information about CVE-2022-26872?
More information about CVE-2022-26872 can be found in the vendor's security advisory and the NetApp advisory linked in the references.