Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Intense PC Phoenix SecureCore UEFI firmware does not perform capsule signature validation before upgrading the system firmware. The absence of signature validation allows an attacker with administrator privileges to flash a modified UEFI BIOS.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CompuLab Intense PC 输入验证漏洞
Vulnerability Description
CompuLab Intense PC是以色列CompuLab公司的一款迷你型PC设备。 使用cr_2.2.0.400.2版本固件的CompuLab Intense PC中存在安全漏洞,该漏洞源于Phoenix SecureCore UEFI固件没有执行capsule签名验证。攻击者可利用该漏洞读取和写入任意的系统固件。
CVSS Information
N/A
Vulnerability Type
N/A