First published: Tue Mar 11 2025(Updated: )
AMI’s SPx contains a vulnerability in the BMC where an Attacker may bypass authentication remotely through the Redfish Host Interface. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.
Credit: biossecurity@ami.com
Affected Software | Affected Version | How to fix |
---|---|---|
AMI SPx |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability CVE-2024-54085 is considered critical due to its potential to allow remote authentication bypass.
To remediate CVE-2024-54085, it is recommended to apply the latest security patches provided by AMI for the SPx product.
Exploitation of CVE-2024-54085 may result in loss of confidentiality, integrity, and availability of the system.
CVE-2024-54085 affects all users of the AMI SPx BMC that utilize the Redfish Host Interface.
Yes, CVE-2024-54085 can be exploited remotely, allowing attackers to bypass authentication without physical access.