ZeroHour

CVE-2022-42290

CVSS 3.1
8.8 high
EPSS
1%p61
Published
()
Modified
Description

NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure and data tampering.

Vendors
nvidia
Products
dgx a100 firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.