Vulnerabilities > Compulab

DATE CVE VULNERABILITY TITLE RISK
2017-07-25 CVE-2017-9457 Improper Input Validation vulnerability in Compulab Intense PC Firmware Cr2.2.0.400.2
Intense PC Phoenix SecureCore UEFI firmware does not perform capsule signature validation before upgrading the system firmware.
local
low complexity
compulab CWE-20
6.7
2017-06-06 CVE-2017-8083 Missing Authorization vulnerability in Compulab Intense PC Firmware and Mintbox 2 Firmware
CompuLab Intense PC and MintBox 2 devices with BIOS before 2017-05-21 do not use the CloseMnf protection mechanism for write protection of flash memory regions, which allows local users to install a firmware rootkit by leveraging administrative privileges.
local
low complexity
compulab CWE-862
6.7