Vulnerabilities > Insyde > Insydeh2O > 5.1

DATE CVE VULNERABILITY TITLE RISK
2023-11-02 CVE-2023-39283 Out-of-bounds Write vulnerability in Insyde Insydeh2O
An SMM memory corruption vulnerability in the SMM driver (SMRAM write) in CsmInt10HookSmm in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to send arbitrary data to SMM which could lead to privilege escalation.
local
low complexity
insyde CWE-787
7.8
2023-08-18 CVE-2023-27471 Unspecified vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
low complexity
insyde
5.5
2023-08-14 CVE-2023-31041 Cleartext Storage of Sensitive Information vulnerability in Insyde Insydeh2O
An issue was discovered in SysPasswordDxe in Insyde InsydeH2O with kernel 5.0 through 5.5.
network
low complexity
insyde CWE-312
7.5
2023-08-07 CVE-2023-27373 Improper Input Validation vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
low complexity
insyde CWE-20
5.5
2023-04-12 CVE-2022-24350 Classic Buffer Overflow vulnerability in Insyde Insydeh2O
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
low complexity
insyde CWE-120
5.5
2023-02-15 CVE-2022-32469 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
high complexity
insyde CWE-367
7.0
2023-02-15 CVE-2022-32475 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
high complexity
insyde CWE-367
7.0
2023-02-15 CVE-2022-32477 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
high complexity
insyde CWE-367
7.0
2023-02-15 CVE-2022-32470 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
high complexity
insyde CWE-367
7.0
2023-02-15 CVE-2022-32473 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Insyde Insydeh2O
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5.
local
high complexity
insyde CWE-367
7.0