Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5f4r-g29m-jw8q

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

Incorrect access control in RDP Level 1 on STMicroelectronics STM32F0 series devices allows physically present attackers to extract the device's protected firmware via a special sequence of Serial Wire Debug (SWD) commands because there is a race condition between full initialization of the SWD interface and the setup of flash protection.

Incorrect access control in RDP Level 1 on STMicroelectronics STM32F0 series devices allows physically present attackers to extract the device's protected firmware via a special sequence of Serial Wire Debug (SWD) commands because there is a race condition between full initialization of the SWD interface and the setup of flash protection.

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 4.6
nvd
больше 7 лет назад

Incorrect access control in RDP Level 1 on STMicroelectronics STM32F0 series devices allows physically present attackers to extract the device's protected firmware via a special sequence of Serial Wire Debug (SWD) commands because there is a race condition between full initialization of the SWD interface and the setup of flash protection.

EPSS

Процентиль: 20%
0.00063
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-362