CVE-2023-34471: AMI MegaRAC SPx

High severity, CVSS 8.1. EPSS: 0.3% chance of exploitation in the next 30 days.

AMI SPx contains a vulnerability in the BMC where a user may cause a missing cryptographic step by generating a hash-based message authentication code (HMAC). A successful exploit of this vulnerability may lead to the loss confidentiality, integrity, and authentication.

Affected products

  • AMI MegaRAC SPx: version 12 only; version 13 only

Published 2023-07-05. Last modified 2026-06-17.