Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wjmr-m5q4-p45g

Опубликовано: 16 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.

Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.

EPSS

Процентиль: 36%
0.00151
Низкий

7.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
почти 3 года назад

Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.

EPSS

Процентиль: 36%
0.00151
Низкий

7.8 High

CVSS3

Дефекты

CWE-787