NVIDIA / Bmc
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-25508 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler, where an attacker with the appropriate level of authorization can upload and download arbitrary… | HIGH | 7.8 | Apr 22, 2023 |
| CVE-2023-25507 | NVIDIA DGX-1 BMC contains a vulnerability in the SPX REST API, where an attacker with the appropriate level of authorization can inject arbitrary shell command… | HIGH | 8.8 | Apr 22, 2023 |
| CVE-2023-25505 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler of the AMI MegaRAC BMC , where an attacker with the appropriate level of authorization can cause… | HIGH | 7.8 | Apr 22, 2023 |
| CVE-2023-0201 | NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable resource, which may l… | MEDIUM | 6.7 | Apr 22, 2023 |
| CVE-2023-0200 | NVIDIA DGX-2 contains a vulnerability in OFBD where a user with high privileges and a pre-conditioned heap can cause an access beyond a buffers end, which may… | HIGH | 7.5 | Apr 22, 2023 |
| CVE-2022-42287 | NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary files under certain circumstances, which ma… | HIGH | 7.8 | Jan 13, 2023 |
| CVE-2022-42284 | NVIDIA BMC stores user passwords in an obfuscated form in a database accessible by the host. This may lead to a credentials exposure. | MEDIUM | 6.2 | Jan 13, 2023 |
| CVE-2022-42283 | NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execut… | HIGH | 7.8 | Jan 13, 2023 |
| CVE-2022-42282 | NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can access arbitrary files, which may lead to information disclosure. | MEDIUM | 6.5 | Jan 13, 2023 |
| CVE-2022-42280 | NVIDIA BMC contains a vulnerability in SPX REST auth handler, where an un-authorized attacker can exploit a path traversal, which may lead to authentication by… | HIGH | 7.8 | Jan 13, 2023 |
| CVE-2022-42278 | NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locations within the memory context of the IP… | HIGH | 7.8 | Jan 13, 2023 |
| CVE-2022-42275 | NVIDIA BMC IPMI handler allows an unauthenticated host to write to a host SPI flash bypassing secureboot protections. This may lead to a loss of integrity and… | HIGH | 7.7 | Jan 13, 2023 |
| CVE-2022-42274 | NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execut… | HIGH | 7.8 | Jan 13, 2023 |
Showing 1 to 13 of 13 CVEs