ZeroHour

CVE-2017-3197

PoC ×3
CVSS 3.0
9.8 critical
EPSS
6%p92
Published
()
Modified
Description

GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.

Vendors
gigabyte
Products
gb-bsi7h-6500 firmware, gb-bxi7-5775 firmware
Weakness
CWE-693, CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news