CVE-2022-42284: Medium severity nvidia baseboard management controller (bmc) vulnerability
Published Jan 13, 2023
·Updated
NVIDIA BMC stores user passwords in an obfuscated form in a database accessible by the host. This may lead to a credentials exposure.
Affected Software
2 affected components
Nvidia BMC<00.19.07
Nvidia DGX A100
Event History
Jan 13, 2023
CVE Published
via MITRE·01:45 AM
Data Sourced
via MITRE·01:45 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this NVIDIA BMC vulnerability?
The vulnerability ID for this NVIDIA BMC vulnerability is CVE-2022-42284.
2
What is the severity of CVE-2022-42284?
The severity of CVE-2022-42284 is medium with a severity value of 5.5.
3
What is the affected software for CVE-2022-42284?
The affected software for CVE-2022-42284 is NVIDIA BMC version up to and excluding 00.19.07.
4
What is the impact of CVE-2022-42284?
The impact of CVE-2022-42284 is the potential exposure of user credentials due to the storage of passwords in an obfuscated form in a database accessible by the host.
5
Where can I find more information about CVE-2022-42284?
More information about CVE-2022-42284 can be found at this link: https://nvidia.custhelp.com/app/answers/detail/a_id/5435