← back
CVE-2023-34336highCWE-120

CVE-2023-34336

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.1epss 0.7%
exploitation probability
0.7%top 50% of all CVEs
observed exploitation
nono source reports it
In short

A vulnerability in AMI BMC's IPMI handler allows attackers with certain privileges to overflow a buffer, potentially executing malicious code, crashing the system, or gaining higher-level access.

Technical detail

A buffer overflow vulnerability exists in the IPMI handler of AMI BMC that can be triggered by a privileged attacker through malformed IPMI requests, potentially resulting in arbitrary code execution, denial of service, or privilege escalation on the underlying system.

Summary generated and translated by AI from the official description.
AMI BMC contains a vulnerability in the IPMI handler, where an attacker with the required privileges can cause a buffer overflow, which may lead to code execution, denial of service, or escalation of privileges.  
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
AMI · MegaRAC_SPx