Show filters
16,618 Total Results
Displaying 261-270 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2023-31343

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution.
0
Attacker Value
Unknown

CVE-2023-31342

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution.
0
Attacker Value
Unknown

CVE-2023-31331

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Improper access control in the DRTM firmware could allow a privileged attacker to perform multiple driver initializations, resulting in stack memory corruption that could potentially lead to loss of integrity or availability.
0
Attacker Value
Unknown

CVE-2023-20515

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Improper access control in the fTPM driver in the trusted OS could allow a privileged attacker to corrupt system memory, potentially leading to loss of integrity, confidentiality, or availability.
0
Attacker Value
Unknown

CVE-2024-21925

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Improper input validation within the AmdPspP2CmboxV2 driver may allow a privileged attacker to overwrite SMRAM, leading to arbitrary code execution.
0
Attacker Value
Unknown

CVE-2024-21924

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
SMM callout vulnerability within the AmdPlatformRasSspSmm driver could allow a ring 0 attacker to modify boot services handlers, potentially resulting in arbitrary code execution.
0
Attacker Value
Unknown

CVE-2024-0179

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally authenticated attackers to overwrite SMRAM, potentially resulting in arbitrary code execution.
0
Attacker Value
Unknown

CVE-2023-20507

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
An integer overflow in the ASP could allow a privileged attacker to perform an out-of-bounds write, potentially resulting in loss of data integrity.
0
Attacker Value
Unknown

CVE-2025-1044

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Logsign Unified SecOps Platform Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web service, which listens on TCP port 443 by default. The issue results from the lack of proper implementation of the authentication algorithm. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-25336.
Attacker Value
Unknown

CVE-2025-21194

Disclosure Date: February 11, 2025 (last updated February 27, 2025)
Microsoft Surface Security Feature Bypass Vulnerability