Known vulnerabilities in Baseboard Management Controller (BMC)

Vendor: nVidia
Software CPE: cpe:2.3:h:nvidia:baseboard_management_controller_bmc:*:*:*:*:*:*:*:*
Total vulnerabilities: 14
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Baseboard Management Controller (BMC) Baseboard Management Controller (BMC) is affected by 14 known vulnerabilities: 1 high, 3 medium, 10 low Critical High Medium Low

Vulnerabilities (14)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86308 - Information Exposure Through an Error Message
CVE-2022-42288
CWE-209 Medium
No
No
2.09.00 09.02.2024 SB2024020928
#VU86307 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-42287
CWE-22 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86306 - Cleartext Storage of Sensitive Information
CVE-2022-42284
CWE-312 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86305 - Memory corruption
CVE-2022-42283
CWE-119 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86303 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-42282
CWE-22 Medium
No
No
2.09.00 09.02.2024 SB2024020928
#VU86301 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-42280
CWE-22 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86300 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-42290
CWE-78 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86299 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-42289
CWE-78 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86298 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-42279
CWE-78 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86297 - Memory corruption
CVE-2022-42275
CWE-119 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86296 - Memory corruption
CVE-2022-42274
CWE-119 Low
No
No
2.09.00 09.02.2024 SB2024020928
#VU86293 - Memory corruption
CVE-2022-42273
CWE-119 Medium
No
No
2.09.00 09.02.2024 SB2024020928
#VU86291 - Memory corruption
CVE-2022-42272
CWE-119 High
No
No
2.09.00 09.02.2024 SB2024020928
#VU86289 - Memory corruption
CVE-2022-42271
CWE-119 Low
No
No
2.09.00 09.02.2024 SB2024020928