First published: Tue Jan 31 2023(Updated: )
AMI Megarac Weak password hashes for Redfish & API
Credit: cret@cert.org cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ami Megarac Spx-12 | <7.00 | |
Ami Megarac Spx-13 | <5.00 |
AMI-SA-2023001
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-40258 is medium.
AMI Megarac Spx-12 version up to-exclusive 7.00 and AMI Megarac Spx-13 version up to-exclusive 5.00 are affected by CVE-2022-40258.
To fix CVE-2022-40258, update AMI Megarac Spx-12 to version 7.00 or above and AMI Megarac Spx-13 to version 5.00 or above.
The CWE for CVE-2022-40258 is CWE-916.
You can find more information about CVE-2022-40258 in the following references: [Security Advisory by AMI](https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023001.pdf), [Security Advisory by NetApp](https://security.netapp.com/advisory/ntap-20230731-0008/).