Vulnerabilities > AMD > Epyc 7313P Firmware > milanpi.1.0.0.9

DATE CVE VULNERABILITY TITLE RISK
2023-05-09 CVE-2021-46769 Improper Input Validation vulnerability in AMD products
Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to execute arbitrary DMA copies, which can lead to code execution.
network
low complexity
amd CWE-20
8.8
2023-05-09 CVE-2021-46775 Improper Input Validation vulnerability in AMD products
Improper input validation in ABL may enable an attacker with physical access, to perform arbitrary memory overwrites, potentially leading to a loss of integrity and code execution.
low complexity
amd CWE-20
6.8
2023-05-09 CVE-2022-23818 Improper Input Validation vulnerability in AMD products
Insufficient input validation on the model specific register: VM_HSAVE_PA may potentially lead to loss of SEV-SNP guest memory integrity.
network
low complexity
amd CWE-20
7.5