Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwcg-44xm-88h2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

The BIOS onboard MiR's Computer is not protected by password, therefore, it allows a Bad Operator to modify settings such as boot order. This can be leveraged by a Malicious operator to boot from a Live Image.

The BIOS onboard MiR's Computer is not protected by password, therefore, it allows a Bad Operator to modify settings such as boot order. This can be leveraged by a Malicious operator to boot from a Live Image.

EPSS

Процентиль: 45%
0.00223
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-284
CWE-287

Связанные уязвимости

CVSS3: 4.6
nvd
около 5 лет назад

The BIOS onboard MiR's Computer is not protected by password, therefore, it allows a Bad Operator to modify settings such as boot order. This can be leveraged by a Malicious operator to boot from a Live Image.

EPSS

Процентиль: 45%
0.00223
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-284
CWE-287