CVE-2022-42280: Path Traversal
Published Jan 13, 2023
·Updated
NVIDIA BMC contains a vulnerability in SPX REST auth handler, where an un-authorized attacker can exploit a path traversal, which may lead to authentication bypass.
Affected Software
2 affected components
Nvidia BMC<00.19.07
Nvidia DGX A100
Event History
Jan 13, 2023
CVE Published
via MITRE·01:35 AM
Data Sourced
via MITRE·01:35 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this NVIDIA BMC vulnerability?
The vulnerability ID for this NVIDIA BMC vulnerability is CVE-2022-42280.
2
What is the title of this NVIDIA BMC vulnerability?
The title of this NVIDIA BMC vulnerability is 'NVIDIA BMC contains a vulnerability in SPX REST auth handler where an un-authorized attacker can exploit a path traversal, which may lead to authentication bypass.'
3
What is the severity of the NVIDIA BMC vulnerability?
The severity of the NVIDIA BMC vulnerability is high with a severity value of 7.8.
4
What software is affected by this NVIDIA BMC vulnerability?
The NVIDIA BMC vulnerability affects NVIDIA BMC version 00.19.07.
5
Is NVIDIA DGX A100 affected by this vulnerability?
No, NVIDIA DGX A100 is not affected by this vulnerability.