Show filters
42 Total Results
Displaying 1-10 of 42
Sort by:
Attacker Value
Unknown

CVE-2021-36260

Disclosure Date: September 22, 2021 (last updated February 23, 2025)
A command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the vulnerability to launch a command injection attack by sending some messages with malicious commands.
Attacker Value
Unknown

CVE-2022-23821

Disclosure Date: November 14, 2023 (last updated February 13, 2024)
Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.
Attacker Value
Unknown

CVE-2022-23820

Disclosure Date: November 14, 2023 (last updated June 18, 2024)
Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.
Attacker Value
Unknown

CVE-2023-43581

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43580

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43579

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43578

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43577

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43576

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43575

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.