CVE-2021-39298

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

8.8high3.x
0246810

CVSS Score: 8.8/10

All CVSS Scores

CVSS 3.x
8.8

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CVSS 2.0
7.2

Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Description

A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileges to access the SMM resulting in arbitrary code execution which could be used by malicious actors to bypass security mechanisms provided in the UEFI firmware.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

Vulnerable Software (188)

Type: Configuration

Vendor: hp

Product: 260_g3_desktop_mini_pc_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:260_g3_desktop_mini_pc_firmware:*:*:*:*:*:*:*:*",          "versionEndIncluding": "2.17.00",          "vuln...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_dragonfly_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_dragonfly_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.12.00",          "vulnerable...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_dragonfly_g2_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_dragonfly_g2_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.08.00",          "vulnera...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_dragonfly_max_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_dragonfly_max_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.08.00",          "vulner...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_x2_1013_g3_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_x2_1013_g3_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.19.00",          "vulnerabl...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_x2_g4_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_x2_g4_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.12.00",          "vulnerable": t...

Source: nvd

Type: Configuration

Vendor: hp

Product: elite_x2_g8_tablet_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elite_x2_g8_tablet_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.08.00",          "vulnera...

Source: nvd

Type: Configuration

Vendor: hp

Product: elitebook_1050_g1_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elitebook_1050_g1_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.19.00",          "vulnerab...

Source: nvd

Type: Configuration

Vendor: hp

Product: elitebook_830_g5_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elitebook_830_g5_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.19.00",          "vulnerabl...

Source: nvd

Type: Configuration

Vendor: hp

Product: elitebook_830_g6_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:hp:elitebook_830_g6_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "01.12.00",          "vulnerabl...

Source: nvd