Security Advisory

CVE-2017-9457

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-07-25 14:00:00
Last updated 2024-08-05 17:11:01
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Intense PC Phoenix SecureCore UEFI firmware does not perform capsule signature validation before upgrading the system firmware. The absence of signature validation allows an attacker with administrator privileges to flash a modified UEFI BIOS.