Lucene search

K
cvelistNvidiaCVELIST:CVE-2020-11486
HistoryOct 29, 2020 - 3:35 a.m.

CVE-2020-11486

2020-10-2903:35:31
nvidia
www.cve.org
3
nvidia dgx servers
bmc firmware
remote code execution
vulnerability
ami firmware

AI Score

9.8

Confidence

High

EPSS

0.009

Percentile

83.3%

NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software allows an attacker to upload or transfer files that can be automatically processed within the product’s environment, which may lead to remote code execution.

CNA Affected

[
  {
    "product": "NVIDIA DGX Servers",
    "vendor": "NVIDIA",
    "versions": [
      {
        "status": "affected",
        "version": "All DGX-1 Servers with BMC firmware versions prior to 3.38.30"
      }
    ]
  }
]

AI Score

9.8

Confidence

High

EPSS

0.009

Percentile

83.3%

Related for CVELIST:CVE-2020-11486