CVE-2022-4020 - CERT CVE
ID CVE-2022-4020
Sažetak Vulnerability in the HQSwSmiDxe DXE driver on some consumer Acer Notebook devices may allow an attacker with elevated privileges to modify UEFI Secure Boot settings by modifying an NVRAM variable.
Reference
CVSS
Base: 8.2
Impact: 6.0
Exploitability:1.5
Pristup
VektorSloženostAutentikacija
LOCAL LOW -
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 07-11-2023 - 03:56
Objavljeno 28-11-2022 - 13:15