First published: Mon Jun 12 2023(Updated: )
AMI BMC contains a vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a valid username, which may lead to information disclosure.
Credit: biossecurity@ami.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ami Megarac Sp-x | >=12.0<12.7 | |
Ami Megarac Sp-x | >=13.0<13.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-34344.
The severity rating of CVE-2023-34344 is medium, with a severity value of 5.3.
The affected software is AMI BMC Megarac Sp-x versions 12.0 to 12.7 and versions 13.0 to 13.5.
This vulnerability in the AMI BMC IPMI handler may lead to information disclosure.
More information about CVE-2023-34344 can be found in the security advisory at: [link](https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023005.pdf)