CVE-2022-40259

CVSS V2 None CVSS V3 None
Description
MegaRAC Default Credentials Vulnerability
Overview
  • CVE ID
  • CVE-2022-40259
  • Assigner
  • cret@cert.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2022-12-05T22:15:10
  • Last Modified Date
  • 2023-02-23T23:27:00
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:o:ami:megarac_sp-x:12:*:*:*:*:*:*:* 1 OR
cpe:2.3:o:ami:megarac_sp-x:13:*:*:*:*:*:*:* 1 OR
History
Created Old Value New Value Data Type Notes
2022-12-07 18:06:38 Added to TrackCVE
2022-12-08 06:39:33 2022-12-05T22:15:10.857 2022-12-05T22:15:10 CVE Published Date updated
2022-12-08 06:39:33 2022-12-06T22:15:10 CVE Modified Date updated
2022-12-08 06:39:33 Modified Undergoing Analysis Vulnerability Status updated
2022-12-10 05:35:35 Undergoing Analysis Modified Vulnerability Status updated
2022-12-12 18:17:29 Modified Undergoing Analysis Vulnerability Status updated
2022-12-18 04:34:23 Undergoing Analysis Modified Vulnerability Status updated
2022-12-23 18:18:38 Modified Undergoing Analysis Vulnerability Status updated
2022-12-23 18:18:39 Weakness Enumeration update
2023-01-31 02:12:44 2023-01-31T01:15:11 CVE Modified Date updated
2023-01-31 19:13:00 2023-01-31T18:15:09 CVE Modified Date updated
2023-01-31 19:13:01 Weakness Enumeration update
2023-01-31 19:13:01 AMI MegaRAC Redfish Arbitrary Code Execution MegaRAC Default Credentials Vulnerability Description updated
2023-02-24 00:19:35 2023-02-23T23:27:00 CVE Modified Date updated
2023-02-24 00:19:35 Undergoing Analysis Analyzed Vulnerability Status updated