Vulnerability Description
Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4: * from 4.3.0.0 before 4.3.0.203 * from 4.3.1.0 before 4.3.1.163 * from 4.4.0.0 before 4.4.0.217 * from 4.5.0.0 before 4.5.0.138
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phoenixtech | Securecore Technology | >= 4.3.0.0, < 4.3.0.203 |
Related Weaknesses (CWE)
References
- https://phoenixtech.com/phoenix-security-notifications/cve-2023-31100/Vendor Advisory
- https://www.phoenix.com/security-notifications/Not Applicable
FAQ
What is CVE-2023-31100?
CVE-2023-31100 is a vulnerability with a CVSS score of 8.4 (HIGH). Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4: * from 4.3.0.0 before 4.3.0....
How severe is CVE-2023-31100?
CVE-2023-31100 has been rated HIGH with a CVSS base score of 8.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-31100?
Check the references section above for vendor advisories and patch information. Affected products include: Phoenixtech Securecore Technology.