CVE-2025-4276
UsbCoreDxe: improper input validation may lead to arbitrary code execution
UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Productos afectados
Insyde Software · InsydeH2O¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →