Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3cr-gxpm-fxxc

Опубликовано: 15 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4:

  • from 4.3.0.0 before 4.3.0.203

from

4.3.1.0 before 4.3.1.163 *

from

4.4.0.0 before 4.4.0.217 *

from

4.5.0.0 before 4.5.0.138

Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4:

  • from 4.3.0.0 before 4.3.0.203

from

4.3.1.0 before 4.3.1.163 *

from

4.4.0.0 before 4.4.0.217 *

from

4.5.0.0 before 4.5.0.138

EPSS

Процентиль: 18%
0.00059
Низкий

8.4 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 8.4
nvd
около 2 лет назад

Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4: * from 4.3.0.0 before 4.3.0.203 * from 4.3.1.0 before 4.3.1.163 * from 4.4.0.0 before 4.4.0.217 * from 4.5.0.0 before 4.5.0.138

EPSS

Процентиль: 18%
0.00059
Низкий

8.4 High

CVSS3

Дефекты

CWE-284