CVE-2023-34344: AMI MegaRAC SPx
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
AMI BMC contains a vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a valid username, which may lead to information disclosure.
Affected products
- AMI MegaRAC SPx: from 12.0, before 12.7 (fixed in 12.7); from 13.0, before 13.5 (fixed in 13.5)
Published 2023-06-12. Last modified 2026-06-17.