Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-36877

Quick assessment

Affected
n/a n/a
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Micro-Star Z-series motherboards和Micro-Star B-series motherboards都是中国Micro-Star公司的一系列主板。 Micro-Star Z-series motherboards和Micro-Star B-series motherboards存在安全漏洞,该漏洞源于在SMI 0xE3的SW处理程序中包写入位置条件。以下产品受到影响:Z590系列主板、Z490系列主板、Z790系列主板、B760系列主板、B560系列主板、B660系列主板和B

AI Predicted 8.8 Difficulty: Moderate EPSS 0.68% · P49
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2024-36877

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A to 7D25v1H was discovered to contain a write-what-where condition in the in the SW handler for SMI 0xE3. Motherboard's with the following chipsets are affected: Intel 300, Intel 400, Intel 500, Intel 600, Intel 700, AMD 300, AMD 400, AMD 500, AMD 600 and AMD 700.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Micro-Star Z-series motherboards和Micro-Star B-series motherboards 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Micro-Star Z-series motherboards和Micro-Star B-series motherboards都是中国Micro-Star公司的一系列主板。 Micro-Star Z-series motherboards和Micro-Star B-series motherboards存在安全漏洞,该漏洞源于在SMI 0xE3的SW处理程序中包写入位置条件。以下产品受到影响:Z590系列主板、Z490系列主板、Z790系列主板、B760系列主板、B560系列主板、B660系列主板和B
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2024-36877

# POC Description Source Link Shenlong Link
1 Exploit POC for CVE-2024-36877 https://github.com/jjensn/CVE-2024-36877 POC Details
2 None https://github.com/CERTologists/POC-CVE-2024-36877 POC Details
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-36877

登录查看更多情报信息。

Other References for CVE-2024-36877 (1)

Same Patch Batch · n/a · 2024-08-12 · 35 CVEs total

CVE-2024-21550 6.1 MEDIUM SteVe 安全漏洞
CVE-2024-42625 FrogCms 安全漏洞
CVE-2024-42744 TOTOLINK X5000R 安全漏洞
CVE-2024-42747 TOTOLINK X5000R 安全漏洞
CVE-2024-42743 TOTOLINK X5000R 安全漏洞
CVE-2024-42745 TOTOLINK X5000R 安全漏洞
CVE-2024-42624 FrogCms 安全漏洞
CVE-2024-42543 TOTOLINK A3700R 安全漏洞
CVE-2024-42545 TOTOLINK A3700R 安全漏洞
CVE-2024-42623 FrogCms 安全漏洞
CVE-2024-42627 FrogCms 安全漏洞
CVE-2024-42626 FrogCms 安全漏洞
CVE-2024-42547 TOTOLINK A3100R 安全漏洞
CVE-2024-42546 TOTOLINK A3100R 安全漏洞
CVE-2024-42748 TOTOLINK X5000R 安全漏洞
CVE-2024-42741 TOTOLINK X5000R 安全漏洞
CVE-2024-42742 TOTOLINK X5000R 安全漏洞
CVE-2023-48171 OWASP DefectDojo 安全漏洞
CVE-2024-40500 i-librarian 安全漏洞
CVE-2024-41651 PrestaShop 安全漏洞

Showing top 20 of 35 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2024-36877

No comments yet


Leave a comment