Vulnerability index

Browse CVEs

99 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Insydeh2o CRITICAL 9.8
CVE-2021-41842

An issue was discovered in AtaLegacySmm in the kernel 5.0 before 05.08.46, 5.1 before 05.16.46, 5.2 before 05.26.46, 5.3 before 05.35.46, 5.4 before …

Fix: 05.08.46 / 05.16.46+
Fix from $2,300 2022-01-06
Insydeh2o HIGH 8.2
CVE-2021-45971

An issue was discovered in SdHostDriver in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 before 05.35.25, 5.4 before 05.…

Fix: 5.16.25 / 5.26.25+
Fix from $1,950 2022-01-06
Insydeh2o HIGH 8.2
CVE-2021-45969

An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 before 05.35.25, 5.4 before 05.43…

Fix: 5.16.25 / 5.26.25+
Fix from $1,950 2022-01-05
Insydeh2o HIGH 8.2
CVE-2021-45970

An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 before 05.35.25, 5.4 before 05.43.…

Fix: 5.16.25 / 5.26.25+
Fix from $1,950 2022-01-05
Insydeh2o HIGH 7.5
CVE-2020-5956

An issue was discovered in SdLegacySmm in Insyde InsydeH2O with kernel 5.1 before 05.15.11, 5.2 before 05.25.11, 5.3 before 05.34.11, and 5.4 before …

Fix: 05.15.11 / 5.25.11+
Fix from $1,950 2022-01-05
Insydeh2o Uefi Bios CRITICAL 9.8
CVE-2020-5955

An issue was discovered in Int15MicrocodeSmm in Insyde InsydeH2O before 2021-10-14 on Intel client chipsets. A caller may be able to escalate privile…

Fix: 05.04.21.0068 / 05.11.26.0015+
Fix from $2,300 2021-11-03
Insydeh2o HIGH 7.8
CVE-2021-33626

A vulnerability exists in SMM (System Management Mode) branch that registers a SWSMI handler that does not sufficiently check or validate the allocat…

Fix: 5.16.25 / 5.25.44+
Fix from $1,950 2021-10-01
Insydeh2o MEDIUM 6.7
CVE-2020-27339

In the kernel in Insyde InsydeH2O 5.x, certain SMM drivers did not correctly validate the CommBuffer and CommBufferSize parameters, allowing callers …

Fix: 5.16.25 / 5.25.44+
Fix from $1,600 2021-06-16
H2oelv HIGH 7.8
CVE-2019-12532

Improper access control in the Insyde software tools may allow an authenticated user to potentially enable escalation of privilege, or information di…

Fix: 100.00.02.08 / 100.00.06.00+
Fix from $1,950 2019-08-26