A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2024-54085

AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability

Published
2025-06-25
Modified
2026-07-31
Sources
cisa-kev

Summary

AMI MegaRAC SPx contains an authentication bypass by spoofing vulnerability in the Redfish Host Interface. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.