Home

Description

Missing authentication in the KVM key download endpoint could allow an unauthenticated attacker with knowledge of the exposed URL to retrieve sensitive keys, potentially leading to loss of confidentiality.

PUBLISHED Reserved 2025-10-16 | Published 2026-05-14 | Updated 2026-05-14 | Assigner AMD




MEDIUM: 6.3CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N

Problem types

CWE-306 Missing Authentication for Critical Function

Product status

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

AMD Device Management Portal 3.0.0.895
unaffected

Default status
affected

3.0.0.895
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-9023.html

cve.org (CVE-2025-62619)

nvd.nist.gov (CVE-2025-62619)

Download JSON