CVE-2022-40258
Severity CVSS v4.0:
Pending analysis
Type:
CWE-916
Use of Password Hash With Insufficient Computational Effort
Publication date:
31/01/2023
Last modified:
13/02/2025
Description
AMI Megarac Weak password hashes for<br />
Redfish & API
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:ami:megarac_spx-12:*:*:*:*:*:*:*:* | 7.00 (excluding) | |
| cpe:2.3:o:ami:megarac_spx-13:*:*:*:*:*:*:*:* | 5.00 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023001.pdf
- https://security.netapp.com/advisory/ntap-20230731-0008/
- https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023001.pdf
- https://security.netapp.com/advisory/ntap-20230731-0008/



