CVE-2023-25191: AMI MegaRAC SPx

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

AMI MegaRAC SPX devices allow Password Disclosure through Redfish. The fixed versions are SPx_12-update-7.00 and SPx_13-update-5.00.

Affected products

  • AMI MegaRAC SPx: version 12 only; version 13 only

Published 2023-02-15. Last modified 2026-06-17.