Vulnerabilities > AMI

DATE CVE VULNERABILITY TITLE RISK
2022-09-20 CVE-2022-40261 Classic Buffer Overflow vulnerability in multiple products
An attacker can exploit this vulnerability to elevate privileges from ring 0 to ring -2, execute arbitrary code in System Management Mode - an environment more privileged than operating system (OS) and completely isolated from it.
local
low complexity
intel ami CWE-120
8.2
2022-09-20 CVE-2022-40262 Out-of-bounds Write vulnerability in multiple products
A potential attacker can execute an arbitrary code at the time of the PEI phase and influence the subsequent boot stages.
local
low complexity
ami intel CWE-787
8.2