ZeroHour

CVE-2023-40261

PoC
CVSS 3.1
6.8 medium
EPSS
<1%p30
Published
()
Modified
Description

Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR17, 4.0.0 SR07, 4.1.0 SR04, 4.2.0 SR04, and 4.3.0 SR02 fails to validate file attributes during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.

Vendors
dieboldnixdorf
Products
vynamic security suite
Weakness
CWE-665
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.