Database/Firmware, BMC & network fabric

AMI MegaRAC SPX (Redfish): User enumeration through Redfish
CVSS 5.3CVE-2023-25192Firmware, BMC & network fabriccurated
Impact
User enumeration through Redfish — maps valid BMC accounts fleet-wide ahead of a credential attack
Who can reach it
Network / Redfish, unauthenticated
What to do
BMC firmware update to SPx12-update-7.00 / SPx13-update-5.00; low severity alone, but it is the reconnaissance leg of the MegaRAC chain
References
Related entries
- Insyde InsydeH2O (TrEEConfigDriver, TPM PCR reporting): Low CVSS, high operational consequenceCVE-2023-30633 · Insyde InsydeH2O (TrEEConfigDriver, TPM PCR reporting)Medium
- Intel Server OpenBMC firmware (before egs-1.05) - credential storage: Credentials are insufficiently protectedCVE-2023-32280 · Intel Server OpenBMC firmware (before egs-1.05) - credential storageMedium
- AMI MegaRAC SPx (IPMI handler): Timing and response differences in the IPMI handler let an unauthenticated attackerCVE-2023-34344 · AMI MegaRAC SPx (IPMI handler)Medium
- Juniper Junos OS J-Web (EX): PHP external variable modificationCVE-2023-36844 · Juniper Junos OS J-Web (EX)Medium
- Juniper Junos OS J-Web (EX): Missing authentication on `installAppPackage.php` — unauthenticated file upload to theCVE-2023-36847 · Juniper Junos OS J-Web (EX)Medium
- Linux KVM - SEV-ES/SEV-SNP VMGEXIT double-fetch race: A KVM guest running SEV-ES or SEV-SNP with several vCPUs canCVE-2023-4155 · Linux KVM - SEV-ES/SEV-SNP VMGEXIT double-fetch raceMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.