Beveiligingsadvies

CVE-2021-43613

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-09-03 02:05:35
Laatst bijgewerkt 2026-09-03 13:03:26
Toegewezen door Insyde
CVSS-score 6.5
Status PUBLISHED

Beschrijving

An issue was discovered in SysPasswordDxe in Insyde InsydeH2O. User and administrator password hashes are exposed in runtime UEFI variables, leading to escalation of privilege