Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-10283
HistoryFeb 08, 2022 - 12:00 a.m.

Insyde InsydeH2O has an unspecified vulnerability (CNVD-2022-10283)

2022-02-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
7

0.0004 Low

EPSS

Percentile

5.1%

Insyde InsydeH2O is a C source from Insyde Software (Taiwan, China) that implements the new technology “EFI/UEFI” specification, designed to replace the legacy BIOS (Basic Input/Output System). The vulnerability can be exploited to read or write or manipulate data to SMRAM, resulting in an escalation of privileges reserved for SMM using the SwSMI handler.

0.0004 Low

EPSS

Percentile

5.1%

Related for CNVD-2022-10283