Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7p7h-58wp-83q6

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.

The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.

EPSS

Процентиль: 19%
0.00062
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 6.7
nvd
больше 7 лет назад

The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.

EPSS

Процентиль: 19%
0.00062
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-284