Show filters
56 Total Results
Displaying 11-20 of 56
Sort by:
Attacker Value
Unknown

CVE-2023-0201

Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bounds of an indexable resource, which may lead to code execution, denial of service, compromised integrity, and information disclosure.
Attacker Value
Unknown

CVE-2023-0200

Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-2 contains a vulnerability in OFBD where a user with high privileges and a pre-conditioned heap can cause an access beyond a buffers end, which may lead to code execution, escalation of privileges, denial of service, and information disclosure.
Attacker Value
Unknown

CVE-2021-39295

Disclosure Date: April 15, 2023 (last updated October 08, 2023)
In OpenBMC 2.9, crafted IPMI messages allow an attacker to cause a denial of service to the BMC via the netipmid (IPMI lan+) interface.
Attacker Value
Unknown

CVE-2022-35729

Disclosure Date: February 16, 2023 (last updated October 08, 2023)
Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access.
Attacker Value
Unknown

CVE-2022-29494

Disclosure Date: February 16, 2023 (last updated October 08, 2023)
Improper input validation in firmware for OpenBMC in some Intel(R) platforms before versions egs-0.91-179 and bhs-04-45 may allow an authenticated user to potentially enable denial of service via network access.
Attacker Value
Unknown

CVE-2022-42287

Disclosure Date: January 13, 2023 (last updated October 08, 2023)
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary files under certain circumstances, which may lead to denial of service, escalation of privileges, information disclosure and data tampering.
Attacker Value
Unknown

CVE-2022-42284

Disclosure Date: January 13, 2023 (last updated October 08, 2023)
NVIDIA BMC stores user passwords in an obfuscated form in a database accessible by the host. This may lead to a credentials exposure.
Attacker Value
Unknown

CVE-2022-42283

Disclosure Date: January 13, 2023 (last updated October 08, 2023)
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution.
Attacker Value
Unknown

CVE-2022-42282

Disclosure Date: January 13, 2023 (last updated October 08, 2023)
NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can access arbitrary files, which may lead to information disclosure.
Attacker Value
Unknown

CVE-2022-42280

Disclosure Date: January 13, 2023 (last updated October 08, 2023)
NVIDIA BMC contains a vulnerability in SPX REST auth handler, where an un-authorized attacker can exploit a path traversal, which may lead to authentication bypass.