CVE-2023-34337: Inadequate Encryption Strength
AMI SPx contains a vulnerability in the BMC where a user may cause an inadequate encryption strength by hash-based message authentication code (HMAC). A successful exploit of this vulnerability may lead to a loss of confidentiality, integrity, and availability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-34337.
What is the title of this vulnerability?
The title of this vulnerability is 'AMI SPx contains a vulnerability in the BMC where a user may cause an inadequate encryption strength...'.
What is the severity level of CVE-2023-34337?
The severity level of CVE-2023-34337 is high.
What is the affected software of CVE-2023-34337?
The affected software of CVE-2023-34337 is Ami Megarac Sp-x version 12 and version 13.
How can this vulnerability be exploited?
This vulnerability can be exploited by causing an inadequate encryption strength by hash-based message authentication code (HMAC) in the BMC, which may lead to a loss of confidentiality, integrity, and availability.