Database/Firmware, BMC & network fabric

AMI MegaRAC: User enumeration — lets an attacker map valid BMC accounts before credential attack
CVE-2022-2827Firmware, BMC & network fabriccurated
Impact
User enumeration — lets an attacker map valid BMC accounts before credential attack
Who can reach it
Network
What to do
BMC firmware update; low individual severity but it is the reconnaissance step for the rest of the MegaRAC chain
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.