CVE-2020-14032 Information
Jun 07, 2022
cve
Description
ASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
https://dannyodler.medium.com/attacking-the-golden-ring-on-amd-mini-pc-b7bfb217b437 https://www.asrock.com/support/index.us.asp?cat=BIOS
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
9.8
Share on: