← voltar
CVE-2023-20518

CVE-2023-20518

CVSS 1.9 LOWEPSS 0.1%CWE-459
Vexday Risk Score
8Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 1.9EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
13 ago 2024Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
Incomplete cleanup in the ASP may expose the Master Encryption Key (MEK) to a privileged attacker with access to the BIOS menu or UEFI shell and a memory exfiltration vulnerability, potentially resulting in loss of confidentiality.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
Produtos afetados
AMD · AMD Athlon™ 3000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Athlon™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD EPYC™ 9004 Series ProcessorsAMD · AMD Ryzen™ 3000 Series Desktop ProcessorsAMD · AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ GraphicsAMD · AMD Ryzen™ 3000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Desktop ProcessorsAMD · AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 6000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7000 Series Desktop ProcessorsAMD · AMD Ryzen™ 7020 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7035 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ Embedded 5000 Series ProcessorsAMD · AMD Ryzen™ Embedded 7000 Series ProcessorsAMD · AMD Ryzen™ Embedded R1000 Series ProcessorsAMD · AMD Ryzen™ Embedded R2000 Series ProcessorsAMD · AMD Ryzen™ Embedded V1000 Series ProcessorsAMD · AMD Ryzen™ Embedded V2000 Series ProcessorsAMD · AMD Ryzen™ Embedded V3000 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ 3000 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 3000WX Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 5000WX Processors

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →