MegaRAC_SPx
AMI- Product type
- Other
- Catalog vulnerabilities
- 21
Severity across 21 analyzed records
en
Verify to analyze this security profile
As of 09/14/2026, within CyStack's analyzed data, MegaRAC_SPx has 0 security vulnerabilities published in the last 90 days. Of these, 0 are rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of MegaRAC_SPx and determine which vulnerabilities affect that version.
| Vulnerability | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2023-37297heap memory overflow | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-37296Stack-based Buffer Overflow | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-37295Heap-based Buffer Overflow | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-37294Heap-based Buffer Overflow | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-37293stack-based buffer overflow | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityCritical |
CVE-2023-34333Untrusted Pointer Dereference | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-3043Stack-based Buffer Overflow BMC | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityCritical |
CVE-2023-34332Untrusted Pointer Dereference in BMC | Exploitation statusNot known exploited | FixYes | Published01/09/2024 | SeverityHigh |
CVE-2023-34473Usage of Hard-coded Credentials | Exploitation statusNot known exploited | FixYes | Published07/05/2023 | SeverityMedium |
CVE-2023-34472 | Exploitation statusNot known exploited | FixYes | Published07/05/2023 | SeverityMedium |
CVE-2023-34471Missing Cryptographic Step | Exploitation statusNot known exploited | FixYes | Published07/05/2023 | SeverityMedium |
CVE-2023-34338hard coded cryptographic key | Exploitation statusNot known exploited | FixYes | Published07/05/2023 | SeverityHigh |
CVE-2023-34337Inadequate Encryption Strength | Exploitation statusNot known exploited | FixYes | Published07/05/2023 | SeverityHigh |
CVE-2023-34336 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityHigh |
CVE-2023-34335 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityHigh |
CVE-2023-34334 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityHigh |
CVE-2023-34343 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityHigh |
CVE-2023-34342 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityMedium |
CVE-2023-34341 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityHigh |
CVE-2023-34345 | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityMedium |
CVE-2023-34344A vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a valid username | Exploitation statusNot known exploited | FixYes | Published06/12/2023 | SeverityMedium |
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan