Vulnerabilities > Gigabyte > GB Bsi7H 6500 > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-07-09 CVE-2017-3197 Improper Input Validation vulnerability in Gigabyte Gb-Bsi7H-6500 Firmware and Gb-Bxi7-5775 Firmware
GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features.
network
low complexity
gigabyte CWE-20
critical
10.0
2018-07-09 CVE-2017-3198 Missing Encryption of Sensitive Data vulnerability in Gigabyte Gb-Bsi7H-6500 Firmware and Gb-Bxi7-5775 Firmware
GIGABYTE BRIX UEFI firmware does not cryptographically validate images prior to updating the system firmware.
network
low complexity
gigabyte CWE-311
critical
10.0