PT-2022-6244 · Ami · Ami Megarac

Vlad Babkin

·

Published

2022-12-05

·

Updated

2023-07-21

·

CVE-2022-2827

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions AMI MegaRAC (affected versions not specified)
Description The issue is related to insufficient protection of service data in the implementation of the application programming interface of the AMI MegaRAC firmware controllers for remote management. Exploitation of this issue may allow a remote attacker to gain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2023-00639
CVE-2022-2827

Affected Products

Ami Megarac