ZeroHour

CVE-2022-42287

CVSS 3.1
7.8 high
EPSS
<1%p12
Published
()
Modified
Description

NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary files under certain circumstances, which may lead to denial of service, escalation of privileges, information disclosure and data tampering.

Vendors
nvidia
Products
bmc
Weakness
CWE-22, CWE-434
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.